Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

μEFI - A Microkernel-Style UEFI with Isolation and Transparency

USENIX via YouTube

Overview

Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Learn about μEFI, a groundbreaking microkernel-style UEFI isolation framework presented at USENIX ATC '25 that addresses critical security vulnerabilities in modern firmware systems. Discover how researchers from Shanghai Jiao Tong University developed the first isolation framework for UEFI firmware that transparently runs UEFI modules in sandboxes, drawing inspiration from microkernel design principles. Explore the technical implementation of deprivileging UEFI modules to user mode and isolating them in different address spaces, while maintaining transparent execution through innovative trampoline injection and protocol analysis techniques. Understand how this 15-minute conference talk covers the growing security concerns with UEFI Secure Boot, including the increasing number of UEFI-related CVEs and attacks that bypass traditional security measures. Examine the enhanced security mechanisms incorporated into μEFI, including a seccomp-like capability restriction system and automated input validation for detecting and preventing invalid inputs. Review the evaluation results demonstrating successful execution of complex UEFI modules without modifications, achieving minimal performance overhead of just 1.91% during the UEFI boot phase, making this solution both practical and effective for real-world deployment.

Syllabus

USENIX ATC '25 - μEFI: A Microkernel-Style UEFI with Isolation and Transparency

Taught by

USENIX

Reviews

Start your review of μEFI - A Microkernel-Style UEFI with Isolation and Transparency

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.