The Research of Malware Prevention Technology Based on UEFI

Liu Gongshen,Meng Kui,Fu Siyuan
DOI: https://doi.org/10.1109/icecc.2012.196
2012-01-01
Abstract:UEFI is an international standard which describes an interface between the OS and the platform firmware. To solve the low-level attack threats to computer system, a malicious software prevention system based on UEFI firmware is proposed in this paper. By using binary signature scanning technology, a malware detecting engine under UEFI environment is implemented, whose functions include malicious code detect, boot option analysis and firmware & OS Kernel backup. It is proved that this system can prevent malicious code attacks before the platform booting into the operating system with small storage size and low performance cost.
What problem does this paper attempt to address?