Malware.View on attack.mitre.org
| Technique | Procedure example |
|---|---|
| T1014 Rootkit |
LoJax is a UEFI BIOS rootkit deployed to persist remote access software on some targeted systems. |
| T1112 Modify Registry |
LoJax has modified the Registry key |
| T1542.001 System Firmware |
LoJax is a UEFI BIOS rootkit deployed to persist remote access software on some targeted systems. |
| T1547.001 Registry Run Keys / Startup Folder |
LoJax has modified the Registry key |
| T1564.004 NTFS File Attributes |
LoJax has loaded an embedded NTFS DXE driver to be able to access and write to NTFS partitions. |
None recorded.
Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.