XPAJ: Reversing a Windows x64 BootkitKaspersky Securelist·Jun 19, 18:16 UTC · Jun 19, 2012Ransomware60
Bootkit: the challenge of 2008Kaspersky Securelist·Dec 18, 10:00 UTC · Dec 18, 2008VulnerabilityCVE-2007-5659CVE-2006-0003CVE-2006-5820+9 CVEs35
BlackLotus UEFI bootkit disables Windows security mechanismsHelp Net Security·Apr 17, 10:14 UTC · Apr 17, 2023Vulnerability in the wildCVE-2022-2189460
ESET researchers analyze first UEFI bootkit for Linux systemsHelp Net Security·Nov 27, 00:00 UTC · Nov 27, 2024Exploit / PoC57
Source code of the BlackLotus UEFI Bootkit was leaked on GitHubSecurity Affairs·Jul 14, 21:31 UTC · Jul 14, 2023VulnerabilityCVE-2022-21894147
Windows and Linux users: The deadline to update Secure Boot keys is nearArs Technica · Security·Jun 17, 11:15 UTC · Jun 17, 2026Vulnerability155
Security researchers find another UEFI bootkit used for cyberThe Record·Dec 21, 00:00 UTC · Dec 21, 2022Vulnerability42
Stealthy firmware bootkit leveraged by APT in targeted attacksHelp Net Security·Jan 21, 00:00 UTC · Jan 21, 2022Malware55
Researchers developed a new powerful BIOS bootkitSecurity Affairs·Mar 20, 12:08 UTC · Mar 20, 2015Vulnerability42
BlackLotus is first bootkit bypassing UEFI Secure Boot on Win 11Security Affairs·Mar 1, 20:57 UTC · Mar 1, 2023VulnerabilityCVE-2022-2189460
BootKitty Linux UEFI bootkit spotted exploiting LogoFAIL flawsSecurity Affairs·Dec 3, 08:11 UTC · Dec 3, 2024Exploit / PoCCVE-2023-4023850
Researchers Discover "Bootkitty" – First UEFI Bootkit Targeting Linux KernelsThe Hacker News·Dec 2, 16:30 UTC · Dec 2, 2024RansomwareCVE-2023-4023860
BlackLotus Becomes First UEFI Bootkit Malware to Bypass Secure Boot on Windows 11The Hacker News·Jun 23, 08:42 UTC · Jun 23, 2023Malware in the wildCVE-2022-21894160
New MoonBounce UEFI bootkit can\'t be removed by replacing the hard driveThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Vulnerability30
Bootkitty is the first UEFI Bootkit designed for Linux systemsSecurity Affairs·Nov 27, 21:01 UTC · Nov 27, 2024Ransomware45
Found on VirusTotal: The world’s first UEFI bootkit for LinuxArs Technica · Security·Nov 27, 19:21 UTC · Nov 27, 2024Exploit / PoC145
Diplomats Attacked with Firmware BootkitInfosecurity Magazine·Oct 5, 19:11 UTC · Oct 5, 2020Malware in the wild57
New HybridPetya Ransomware Bypasses UEFI Secure Boot With CVE-2024The Hacker News·Sep 15, 00:00 UTC · Sep 15, 2025Ransomware57
BlackLotus Malware Hijacks Windows Secure Boot ProcessSchneier on Security·Mar 15, 00:00 UTC · Mar 15, 2023Malware in the wildCVE-2022-2189460
Kaspersky Security Bulletin: Malware evolution 2008Kaspersky Securelist·Mar 2, 16:30 UTC · Mar 2, 2009Malware30
NSA Releases Guide to Combat Powerful BlackLotus Bootkit Targeting Windows SystemsThe Hacker News·Jun 24, 15:03 UTC · Jun 24, 2023VulnerabilityCVE-2022-21894CVE-2023-2493235
New FinSpy Malware Variant Infects Windows Systems With UEFI BootkitThe Hacker News·Sep 29, 18:08 UTC · Sep 29, 2021Malware42
New Bootkit “Bootkitty” Targets Linux Systems via UEFIInfosecurity Magazine·Nov 27, 16:30 UTC · Nov 27, 2024Exploit / PoC60
Glupteba Botnet Evades Detection with Undocumented UEFI BootkitThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2024Malware42
Researchers Discover UEFI Bootkit Targeting Windows Computers Since 2012The Hacker News·Oct 6, 06:33 UTC · Oct 6, 2021Vulnerability142
Experts observed FinFisher infections involving usage of a UEFI bootkitSecurity Affairs·Sep 29, 05:20 UTC · Sep 29, 2021Malware30
TrickBot Malware Gets UEFI/BIOS Bootkit Feature to Remain UndetectedThe Hacker News·Dec 3, 12:13 UTC · Dec 3, 2020Malware42
Underminer Exploit Kit spreading Bootkits and cryptocurrency minersSecurity Affairs·Jul 29, 08:54 UTC · Jul 29, 2018VulnerabilityCVE-2015-5119CVE-2016-0189CVE-2018-487835
Vulnerable firmware for Gigabyte motherboards could allow bootkit installationHelp Net Security·Jul 15, 00:00 UTC · Jul 15, 2025VulnerabilityCVE-2025-7029CVE-2025-7028CVE-2025-7027+1 CVEs35
New UEFI Secure Boot Vulnerability Could Allow Attackers to Load Malicious BootkitsThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2025VulnerabilityCVE-2024-734435
Critical vulnerability affecting most Linux distros allows for bootkitsArs Technica · Security·Feb 7, 01:37 UTC · Feb 7, 2024VulnerabilityCVE-2023-4054760