2.11 Ensure EFI Version Is Valid and Checked Regularly - daemon

Information

In order to mitigate firmware attacks Apple has created an automated Firmware check to ensure that the EFI version running is a known good version from Apple. There is also an automated process to check it every seven days.

Rationale:

If the Firmware of a computer has been compromised the Operating System that the Firmware loads cannot be trusted either.

Solution

If EFI does not pass the integrity check you may send a report to Apple. Backing up files and clean installing a known good Operating System and Firmware is recommended.

See Also

https://workbench.cisecurity.org/files/3569

Item Details

Category: SYSTEM AND SERVICES ACQUISITION

References: 800-53|SA-22, CSCv7|2.2

Plugin: Unix

Control ID: a0ea908103058007d267c92992500fb97dc3aad7dea696fb62e2d342dc14f758