Security researchers discovered firmware backdoor in 271 Gigabyte motherboard models affecting ~7 million devices
May 31, 2023In May 2023, Eclypsium researchers discovered that 271 Gigabyte motherboard models contained a hidden UEFI firmware mechanism that dropped a Windows executable to download and execute payloads insecurely. The updater used unencrypted HTTP connections without proper authentication, making man-in-the-middle attacks possible. Approximately 7 million devices were affected. Gigabyte released BIOS updates with signature verification.