BigHugger
sk Skill · mukul975

detecting-secure-boot-bypass

Detect UEFI Secure Boot bypasses and bootkits such as BlackLotus and Bootkitty by verifying Secure Boot state, checking dbx revocation currency, and hashing EFI boot binaries against known-bad sets using mokutil, efi-readvar/dbxtool, CHIPSEC, sbverify/pesign, and Windows Confirm-SecureBootUEFI. Use when auditing fleet dbx rollout after a bootkit advisory or hunting for pre-OS persistence on a suspected-compromised…

installs 8w
0
30-day movement
starts with the next reading
Related entries
1
Connections
0
bashPythonchipsecblacklotusdbx-revocationbootkitpowershellfirmware-integrityuefisecure-boothardware-firmware-security
Host repository
mukul975/Anthropic-Cybersecurity-Skills
Version
1.0
Licence
Apache-2.0
Host stars
33k
Host language
Python