KUEFI runs before the OS and relies on Kaspersky Anti-Virus core

Apr 17, 2013 10:31 GMT  ·  By

Kaspersky Anti-Virus for UEFI (KUEFI) is a security solution that can scan system files and memory addresses before the operating system loads up.

Scanning at such an early stage is efficient against malware such as bootkits and rootkits, which load before the traditional security solution on the system and can disguise the malicious activity or prevent the anti-malware from loading.

In order to achieve its purpose KUEFI loads from a ROM chip and relies on the Kaspersky Anti-Virus core. It is designed to provide a balance between performance and detection rate in order to eliminate tradeoffs.

When a threat is detected, the product can alert the user or block the system from booting until the user solves the problem.

“KUEFI will run at the lowest level possible and make sure that your system is clean and safe,” says Nikolay Grebennikov, CTO of Kaspersky Lab. Because of this, malware creators will have a tough time exploiting loopholes or weaknesses for running malicious applications.

Kaspersky informs that the product is intended for usage in “organizations with the most stringent IT security requirements”.

These include “state agencies, military organizations, power plants, industrial companies, and any other entities where the malware-related data loss, data leakage or corruption poses the greatest threat.”

Kaspersky Anti-Virus for UEFI is currently the only solution taking advantage of the UEFI specification that permits embedding a security solution on a chip.