Even though you tried to update it all, it doesn't mean you're safe
You will be surprised to know that 43% of iMac models (21.5 '' at the end of 2015) are analyzed running old, unsafe firmware and at least 16 Mac models have never been updated to the RFI firmware when Mac OS X was released. 10.10 and 10.12.6.
'Even if you are running the latest version of macOS and installing the latest patch is released, our data shows that there is still the firmware EFI firmware you are running is not the latest version', Duo said.
Duo found that 47 models running macOS versions 10.12, 10.11 and 10.10 did not receive EFI firmware updates with patches for Thunderstrike vulnerabilities 1, 31 models did not receive the patch updates Thunderstrike bug 2. Initial Thunderstrike attacks used by NSA, also included in the WikiLeaks Vault 7 data leak and also mentioned the attack based on the old firmware.
Details about Macs can be found in the report of Duo Labs here https://duo.com/assets/ebooks/Duo-Labs-The-Apple-of-Your-EFI.pdf
According to Duo Labs, their research focuses on the Mac ecosystem because, to a certain extent, Apple has a unique position in controlling the entire ecological environment, but can also be attacked. 'We think that the main problem we have found affects all companies that use the EFI firmware, not just Apple.'
Mac users can also check if they have used the latest version of EFI with the open source EFIgy tool.https://github.com/duo-labs/EFIgy
if an email requests any sensitive information such as your address, bank account, social security number, or even the date of birth, chances are it's a fake email.
tech enthusiasts are probably excited about the launch of surface pro 7. if one of them, you'll be happy to know that microsoft has announced the first firmware update for surface pro 7.
when trying to open the uefi bios menu, you may find that you cannot access uefi firmware settings. this may prevent you from fixing some system problems.
millions of computers running amd ryzen and epyc cpus worldwide are exposed to a dangerous vulnerability that allows attackers to run malicious code on the cpu when they are in system management mode, a sensitive mode that contains important firmware files.
a security hole has just been discovered in windows 7 that can affect millions of users. security researchers recently found a local privilege vulnerability in windows 7 that could affect millions of windows users who haven't updated since this release.
the infotainment system of mazda's new generation mazda mzd connect can be hacked just by plugging in the usb, thanks to a lot of known bugs for at least 3 years.