3.4 BIOS/UEFI Security Flashcards
What is the main difference in security between BIOS and UEFI?
UEFI offers advanced features like secure boot and enhanced permissions, whereas BIOS has limited security capabilities.
What is the purpose of a supervisor/administrator password in BIOS/UEFI?
To protect access to BIOS/UEFI configuration settings and prevent unauthorized changes.
What does a user/system password do in BIOS/UEFI?
Restricts access to the entire computer during boot, often used in personal systems.
What is a storage/hard drive password used for in BIOS/UEFI?
It locks specific hard drives, requiring a password before the operating system can load.
What is Secure Boot?
A UEFI feature that verifies the integrity of firmware, OS loaders, and critical drivers during the boot process to prevent rootkits and malware.
What operating systems support Secure Boot?
Modern systems like Windows 10 and Windows 11.
How does Secure Boot protect against malware?
By verifying digital signatures of boot components and ensuring all UEFI executables are intact.
What are USB port permissions in BIOS/UEFI used for?
To prevent malware introduction and unauthorized data transfers by restricting or disabling USB ports.
What options are available for USB restrictions in BIOS/UEFI?
Disabling USB ports completely or restricting mass storage access while allowing peripherals.
Why is disabling USB mass storage useful in corporate environments?
To prevent data exfiltration and enhance security in high-sensitivity areas.
What are best practices for BIOS/UEFI passwords?
Use strong, unique passwords for supervisor, user, and storage access; avoid sharing them in multi-user environments.
Why is it important to enable Secure Boot?
To safeguard the system against unauthorized firmware and malicious boot components.
How should USB ports be configured in sensitive environments?
Restrict mass storage access while allowing essential devices like keyboards and mice.
What is the importance of updating BIOS/UEFI firmware regularly?
To implement security patches, improve features, and maintain secure boot capabilities.
How does Secure Boot verify drivers during the boot process?
It checks critical drivers against known-good hashes to ensure integrity.