Bonum Certa Men Certa

Former Novell Staff Still Pushing the Linux Foundation Into Restricted Boot Territory, Ignoring the Real Threat (Back Doors)

Greg Kroah-Hartman
Photo by Sebastian Oliva



Summary: Back doors in code, embedded in blobs, and even shoehorned into encryption is the overlooked security threat, which gets pushed aside in favour of phantom threats which Microsoft 'sells' through former Novell staff (i.e. funded by Microsoft)

A MONTH or two ago we mostly ignored exaggerated (sexed-up) reports about something called "Hand of Thief". When there's a Windows security threat the press does not call out Windows, but when it relates to GNU/Linux then tabloids like ZDNet scream from the rooftops. This thing called "Hand of Thief" is basically a malicious program which GNU/Linux users need to install themselves in order for it to do malicious things. It is not a virus, it does not spread, and it hardly even uses social engineering to get itself installed. We cited some reports which stress these facts and now comes a belated one too [1]. LynuxWorks is now offering some "Linux rootkit detector" [2] as if rootkits on GNU/Linux are a common issue. In a sense, since the Linux Foundation seems to insist on helping UEFI restricted boot, we are led to the belief that bootkits are a common threat to Linux. As the Linux Foundation's site put it, as in the words of the employee it acquired from Novell:



Now that The Linux Foundation is a member of the UEFI.org group, I’ve been working on the procedures for how to boot a self-signed Linux kernel on a platform so that you do not have to rely on any external signing authority.


Greg K-H has been working on all sorts of other kernel-level projects that help Microsoft. He did this while being paid by Novell, which was in turn being given money by Microsoft. That's the power of money. Other former Novell employees also helped promote UEFI restricted boot, as we showed before. Rogue influence by Novell in the Linux Foundation is a subject we have written about for half a decade, showing numerous examples.

The bigger security issue right now might be back doors, which might also exist in Linux, even in encryption form [3] (giving away passwords over the network for example), so hard-to-crack passwords [4] might not be enough. Microsoft's and Sony's network compromises sure reveal the massive financial effects of system intrusions, so this subject should not be taken lightly.

UEFI restricted boot is actually a security threat, not a security solution, especially when a signature is provided and managed by some rogue company in the United States -- one which has been secretly in bed with the NSA. With UEFI restricted boot, hardware can be bricked remotely. In a way, UEFI restricted boot deserves the name "unsecure boot". In some devices it can block the user from accessing his/her own computer. Nobody should promote such treacherous computing.

Related/contextual items from the news:



  1. Hand of Thief, Not
    Linux's biggest vulnerability is the software that users install with full "superuser" privileges. If you just install applications from your distro's official repository, that's not a problem. But if you download software from dubious web sites, or if you add a mysterious repository to your package manager, you're opening yourself up for an infection. Always, always make sure you know what software you are installing, why you are installing it, and where it's from.


  2. Linux rootkit detector adds hardware punch to security scanning
    LynuxWorks is stepping up the battle with the release of the first hardware-based rootkit detection system powered by the LynxSecure separation kernel. Called the RDS5201, it combats and detects stealthy advanced persistent threats. Built on the LynxSecure 5.2 separation kernel and hypervisor, this small form factor appliance has been designed to offer a unique detection capability that complements traditional security mechanisms as they try to protect against the growing number and complexity of cyber threats.


  3. RSA warns developers not to use RSA products
    In today's news of the weird, RSA (a division of EMC) has recommended that developers desist from using the (allegedly) 'backdoored' Dual_EC_DRBG random number generator -- which happens to be the default in RSA's BSafe cryptographic toolkit. Youch.
  4. How-to make hard-to-crack passwords you can easily remember


  5. Australian who boasted of hacking to plead not guilty to charges stemming from raid
    Dylan Wheeler, who claimed in February to have breached Microsoft's and Sony's networks, has not been charged with hacking




Recent Techrights' Posts

GNU/Linux is a Platform for Work (Usage Surges in Daytime)
GNU/Linux 15% in daytime
What I Learned in London
some ministers still help us in our fight for press freedom in the UK
At IBM, Workers 'Expire' Early ("Next Step" is 'Voluntary' Layoffs Decades Before Retirement Age)
It seems like the "new normal" is layoffs not existing or barely existing because companies hide them
Bluetooth and Wi-Fi on Gym Equipment Can Endanger Several Parties
Joy oh joy! Give us more "smart" things
Microsoft Silent Layoffs This Month (PIPs and More "Buyouts", Driving Out the Workforce), According to Insiders
They know it's happening because they see it and fellow workers talk about it, even if the media keeps mum
Omarchy is Already Dying
Same as the life cycle of slopfarms
A Vortex of Beacons (or "Bluetooth Everywhere" Vision)
If someone (or someones) calls you paranoid for taking about "beacon"-like functionality, there will be no lack of authoritative citations (e.g. Web links) they can be provided to prove them wrong
 
Links 16/08/2026: Ceuta Reports Social Control Media Used as a Weapon
Links for the day
Links 16/08/2026: Europe in Crisis of Droughts While Energy- and Water-Consuming, Pollution-Emitting Chatbots Are Spread by GAFAM (US) to Keep a Ponzi Scheme Going
Links for the day
We Need Rain, Not Chatbots
There's no "anti-AI" (it's not even AI), there's opposition to fraud, to plagiarism, and to companies that profit more when there's global warning (caused in part by their business activities)
SLAPP Censorship - Part 151 Out of 200: Dealing With Sleazy People and Companies That Steal (While Employing These Sleazy People)
we offer a quick summary and we're reflecting
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, August 15, 2026
IRC logs for Saturday, August 15, 2026
Gemini Links 16/08/2026: Sterrenkijker Releases, Solar Gemini Server
Links for the day
EPO "Cocaine Communication Manager" - Part XVI - The German State Does Not Enforce the Law Against European Patent Office Officials
It's not acceptable that Europe's second-largest institution can get away with crime time and time again
Germany's National Broadcaster (DW English) to Air Julian Assange Film This Coming Week
It seems rather sad that we live in a world where rich thugs can get away with so many horrible things
WordPress is Bloatware and Bloated Software Guarantees Security Incidents
This site turns 20 in about 11 or 12 weeks from now and it was never cracked, not even when it ran WordPress
Too Many Chiefs (or Chefs) at IBM, They Don't Know How to Run a Company (With a 100+ Year or Century-Old Brand Recognition Advantage)
It seems like a consensus opinion; some line managers or middle managers are too selfish or self-deceiving
Clacton's Election Was a 'Show Election'
At least some people squeezed out some "free press" out of this charade [...] That the media kept boosting parodies as the alternative/s to the bigot is a topic we wrote about a great deal over the past 3 weeks
Windows is Burning
Windows is the "burning platform" of the year
Gemini Links 15/08/2026: Stress, Jetlag, and GPU Hype (Waste of Energy for Amusement, Fake 'Currencies', and Now for Mass Plagiarism)
Links for the day
Links 15/08/2026: XBox Rotting Further, "France’s Top Court Strikes Down Ban on Social Media for Children"
Links for the day
SLAPP Censorship - Part 150 Out of 200: Always Independently Verify What People Claim to Be (or Find Yourself in a Jason Arday-Type Moment/Dilemma)
I'm not a cardiologist and Garrett was never a security expert
Links 15/08/2026: "There Is No A.I." (Slop Plagiarism Isn't Intelligence) and Its "Impact on the Environment Is Absolutely Horrifying"
Links for the day
Gemini Links 15/08/2026: Gratitudes, "Microflier" Drones, and Literate Programming
Links for the day
IBM's PIPs and RAs (Layoffs) Going on, Interns as 'Scabs'
It seems like a consensus (also in Reddit, we took a quick look)
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, August 14, 2026
IRC logs for Friday, August 14, 2026
Gemini Links 14/08/2026: Slower Internet, Logging Off Made Easy, and Human Code
Links for the day
Links 14/08/2026: "Mystery of Dark Oxygen", People Despise Slop, and Backlash Grows Against Fake Currencies (Energy-Wasting Scam Like Slop)
Links for the day
Free Publicity
They say there's no such thing as "bad press" or that every publicity is good publicity, sometimes free publicity
Farage's fears, media hijacked by-election, what really happened in Clacton
Reprinted with permission from Daniel Pocock
It's Friday. A Ton of People Departing From IBM and Red Hat.
A mere subset of people who announce this in public at Microsoft's LinkedIn
GNU/Linux and ChromeOS Beyond 11%
Combined with ChromeOS, it's already past and beyond 11%
Chatbots/LLMs Are the Next "Clown Computing", Pure Hype, a Serious Mistake
Programs that scan text and emit something similar (but full of errors)
Links 14/08/2026: Slop 'Music' Causing Problems, Slop Data Centre Contractor Unpaid (Massive Debt), and The Cyber Show Says We're "Colonised By Wankers"
Links for the day
Fake Growth of Social Control Media is Misleading
nowadays people look for alternatives - ones not controlled by MElon, CPC, and Kapo-Berg
statCounter: Windows Down to All-Time Low of 25%, Android Leads the Pack, GNU/Linux About to Leapfrog Apple, Overtaking MacOS
The situation was very different in past years
Microsoft's Mass Layoffs (Including 'Voluntary' Secret Layoffs) Take Their Toll on Seattle
How much longer can they hide their crises?
Planet Fedora ("Fedora People") is Just IBM Staff, Former IBM Staff, and LLM Slop
this is what Fedora boils down to now
Explanation of What Will Happen to Red Hat (and Other Acquired Companies) After August
In short, a lot will be scuttled; history shows it happens over and over again
SLAPP Censorship - Part 149 Out of 200: It Took a Long Time to Show What Jason Arday (at Cambridge) and Harvey Weinstein (in Hollywood) Really Were
Really bad when society endures abuse because the abusers silence their exposers
Gemini Links 14/08/2026: 32-bit RISC-V and BlackBerry
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, August 13, 2026
IRC logs for Thursday, August 13, 2026