NSA Releases Guide to Mitigate BlackLotus Threat

Home / Articles / External / Government

Source: https://media.defense.gov/2023/Jun/22/2003245727/-1/-1/0/230622-D-IM742-2023.JPG
Source: https://media.defense.gov/2023/Jun/22/2003245727/-1/-1/0/230622-D-IM742-2023.JPG

July 11, 2023 | Originally published by NSA on June 22, 2023

FORT MEADE, Md. — Malicious cyber actors could take advantage of a known vulnerability in the Microsoft Windows secure startup process to bypass Secure Boot protection and execute BlackLotus malware.

To guide system administrators and network defenders on how to mitigate this threat, the National Security Agency (NSA) is publicly releasing the “BlackLotus Mitigation Guide” Cybersecurity Information Sheet (CSI). The guide provides an overview of recommended actions to detect and prevent malicious activities associated with BlackLotus.

Focus Areas