Signed Backdoor Hiding in Plain Sight on Framework Devices

Vulnerability in Popular PC and Server Firmware

Ivanti Pulse Secure VPN is apparently using CentOS 6.4

Supply Chain Risk from Gigabyte App Center Backdoor

Everyone gets a rootkit (Weakness in Microsoft WPBT)

There’s a Hole in the Boot

Virtual Media Vulnerability in BMC Opens Servers to Remote Attack

System Management Mode Speculative Execution Attacks