INTEL_REPORT
ESET WeLiveSecurity · published 7/14/2026, 8:53:00 AM · TLP amber
Summary
Ingested excerpt (first ~500 chars of normalized text).
Forgotten UEFI shims undermining Secure Boot ESET researchers discovered 11 vulnerable UEFI shim bootloaders signed by Microsoft that allow attackers to bypass UEFI Secure Boot by exploiting decade-old vulnerabilities Forgotten UEFI shims undermining Secure Boot Award-winning news, views, and insight from the ESET security community English Español Deutsch Português Français TIPS & ADVICE BUSINESS SECURITY ESET RESEARCH About ESET Research Blogposts Podcasts White paper…
https://www.welivesecurity.com/en/eset-research/forgotten-uefi-shims-undermining-secure-boot
sha256:82b23eb1ebaa661cf09ccffb62eed54f5d7fe6c77a17a9a8f9e246d680da490c
What we pulled out
Deterministic extractor (IOC + allowlisted tokens + ATT&CK IDs present in DB).
Indicators
Linked with report → mentions → indicator. Values open the indicator workspace.
Malware families
Allowlist token matches only.
Threat actors mentioned
Allowlist mentions — not a formal attribution verdict.
ATT&CK techniques
MITRE IDs referenced in text and present in local technique table.
CONTINUE INVESTIGATION
High-signal pivots without leaving the thread you started in search.
Browse the report corpus.
Neighborhood from the first linked indicator.
| sha256 |
| 7b2a3f5c96f95bd8086ce54b0825e300f9c8f11fe3401bb631b3215c8de9eb10 |
| Open → |
| sha256 | eb86fa1386fe6e4533b8b938dcc1250616d2f1c14c15e2fcf80834a161018a0a | Open → |
| sha256 | fd23d6e57de6f4e1f9d7118da1c5f31a8af6be5e5d9e8170f9493447268d50c5 | Open → |
| sha256 | a0de9333442c1bf9349a460141ae5e80f911955c6506040fa3d021bf6c1ae3e4 | Open → |
| sha256 | 95b6d71fc0c0f8c5e1533a37aef92cf6b0c961e2cc612a97117fa6759ce5fc06 | Open → |
| sha256 | 236a9cb0d71951c36398a32eb660ce2cd4a52ccfa7cf751cc6a35d9de549e19b | Open → |
| sha256 | 5e594c448760a3135b1a3a83e07a4f2e6fbe49414ef2c7cab1cba77f284fa63b | Open → |
| sha256 | 8a964d5f8373948d20a1d4296fb92e545dad4617a0c810f3b934b53d98ae8963 | Open → |
| sha256 | 410260b1b6f5af5fbeeb9ea3220658435e876cb3247126ee907a437f312db373 | Open → |
| sha256 | 96275dfd6282a522b011177ee049296952ac794832091f937fbbf92869028629 | Open → |
| cve | CVE-2020-10713 | Open → |
| cve | CVE-2015-5281 | Open → |
| cve | CVE-2024-7344 | Open → |
| cve | CVE-2022-34302 | Open → |
| cve | CVE-2023-28005 | Open → |
| cve | CVE-2026-25250 | Open → |