efiXplorer v5.0 [LABScon Edition]
- [FEATURE] GUIDs installation mechanism
- [FEATURE] The GUIDs database is now located in a separate repository: https://github.com/binarly-io/guiddb
- [FEATURE] The JSON report generated by efiXplorer now includes additional information, such as service arguments addresses
- [FEATURE] Improved SMM modules analysis
- [BUGFIX] efiXloader (thanks to @cc-crack)
- [FEATURE] Added attributes extraction for NVRAM variables
- [FEATURE] Improved detection of vulnerabilities related to improper use of GetVariable service (thanks to @naconaco)
- [FEATURE] Improved GUIDs detection
- [FEATURE] Added segment permissions fixes (to fix the results of decompilation of some modules)
- [FEATURE] Dependencies and idasdk updated to the latest versions
- [FEATURE] Added support for analysis of EFI modules with AArch64 architecture
- [FEATURE] Added tracking types of arguments that are passed to child functions to change child function prototypes
- [FEATURE] Other minor improvements to the plugin
Our blog contains a complete changelog: ARM-based Firmware Support in New efiXplorer v5.0 [LABScon Edition]