{"id":123976,"date":"2021-06-19T11:23:21","date_gmt":"2021-06-19T18:23:21","guid":{"rendered":"https:\/\/lifeboat.com\/blog\/2021\/06\/microsofts-new-security-tool-will-discover-firmware-vulnerabilities-and-more-in-pcs-and-iot-devices"},"modified":"2021-06-19T11:23:21","modified_gmt":"2021-06-19T18:23:21","slug":"microsofts-new-security-tool-will-discover-firmware-vulnerabilities-and-more-in-pcs-and-iot-devices","status":"publish","type":"post","link":"https:\/\/lifeboat.com\/blog\/2021\/06\/microsofts-new-security-tool-will-discover-firmware-vulnerabilities-and-more-in-pcs-and-iot-devices","title":{"rendered":"Microsofts new security tool will discover firmware vulnerabilities, and more, in PCs and IoT devices"},"content":{"rendered":"<p><a class=\"aligncenter blog-photo\" href=\"https:\/\/lifeboat.com\/blog.images\/microsofts-new-security-tool-will-discover-firmware-vulnerabilities-and-more-in-pcs-and-iot-devices2.jpg\"><\/a><\/p>\n<p>In the future, Weston would like to see ReFirm become part of the certification. \u201cTo not only make sure that you\u2019re shipping the device secure, but that it\u2019s being scanned regularly by this ReFirm firmware technology and you\u2019re keeping the firmware up to date.\u201d<\/p>\n<p>Despite the name, ReFirm might not stay restricted to firmware. Microsoft has static and dynamic analysis tools it can add to the product, which Weston compared to VirusTotal\u2019s frequent updates with new analysis options. \u201cI can keep putting layers of tools in that analysis pipeline. I think this has the opportunity to be a VirusTotal-like product that, rather than looking for malware, is looking for vulnerabilities in an arbitrary object. We\u2019re focused on firmware because that seems like the right application, but it could be VM snapshots or many, many other things.\u201d<\/p>\n<p>There\u2019s good news for fans of the open-source Binwalk tool, too. Microsoft will be investing heavily in that, because it\u2019s already widely used by multiple teams across the company who have feature requests, says Weston: \u201cI think we probably have a few years\u2019 worth of backlog ideas already!\u201d<\/p>\n","protected":false},"excerpt":{"rendered":"<p>In the future, Weston would like to see ReFirm become part of the certification. \u201cTo not only make sure that you\u2019re shipping the device secure, but that it\u2019s being scanned regularly by this ReFirm firmware technology and you\u2019re keeping the firmware up to date.\u201d Despite the name, ReFirm might not stay restricted to firmware. Microsoft [\u2026]<\/p>\n","protected":false},"author":396,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[34,20],"tags":[],"class_list":["post-123976","post","type-post","status-publish","format-standard","hentry","category-cybercrime-malcode","category-futurism"],"_links":{"self":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts\/123976","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/users\/396"}],"replies":[{"embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/comments?post=123976"}],"version-history":[{"count":0,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts\/123976\/revisions"}],"wp:attachment":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/media?parent=123976"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/categories?post=123976"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/tags?post=123976"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}