Firmware

Computer software that provides low-level control for the hardware and device(s) of a host, such as BIOS or UEFI/EFI

ID: DS0001
Platforms: Linux, Windows, macOS
Collection Layer: Host
Contributors: Center for Threat-Informed Defense (CTID)
Version: 1.0
Created: 20 October 2021
Last Modified: 10 November 2021

Data Components

Firmware: Firmware Modification

Changes made to firmware, including its settings and/or data, such as MBR (Master Boot Record) and VBR (Volume Boot Record)

Firmware: Firmware Modification

Changes made to firmware, including its settings and/or data, such as MBR (Master Boot Record) and VBR (Volume Boot Record)

Domain ID Name
Enterprise T1495 Firmware Corruption
Enterprise T1564 Hide Artifacts
.005 Hidden File System
Enterprise T1542 Pre-OS Boot
.001 System Firmware
.002 Component Firmware
.004 ROMMONkit
.005 TFTP Boot
Enterprise T1014 Rootkit