UEFI malware rears ugly head again: Kaspersky uncovers campaign with whiff of China

IGotOut Silver badge

Can someone clarify something?

It seems to be hidden in SPI flash storage soldered to the seems to be targeting charities and diplomats.

So am I missing something, e.g. these are being shipped pre-hacked knowing their destination? Or is it a scatter gun approach it just hopes it gets to these?

Or is it simply some mb company has a dodgy firmware image?

