T1067 Bootkit Persistence - CraigDonkin/Infrastructure GitHub Wiki

T1067: Bootkit Persistence

  • Use bootkit to persist on system below the OS

  • MBR

    • First loaded
    • Location of the boot loader
    • Overwrite this area
  • VBR

    • divert execution during startup to execute arbitrary code
⚠️ **GitHub.com Fallback** ⚠️