Skip to content
← LibraryTechnique entry
FW-LOGOFAILInitial Access

LogoFAIL (UEFI Image Parser RCE)

Boot-time image parsers in vendor UEFI accept malformed JPG/PNG/BMP from the EFI partition — pre-OS RCE before SecureBoot kicks in.

§ Where this technique fits

FW-LOGOFAIL is catalogued under the Initial Access tactic of the offensive-security kill-chain. It appears in 1 approved dossier in the registry, typically at step 2 on average.

§ Dossiers chaining this technique

§ What commonly comes next

  1. 01seen 1×