Серия из трех частей о способах обхода аутентификации прошивки Supermicro BMC Part 1: https://binarly.
Part 1: https://binarly.io/blog/ghost-in-the-controller-abusing-supermicro-bmc-firmware-verification
Part 2: https://binarly.io/blog/broken-trust-fixed-supermicro-bmc-bug-gains-a-new-life-in-two-new-vulnerabilities
Part 3: https://binarly.io/blog/have-you-patched-are-you-sure-the-story-of-the-sticky-supermicro-bmc-bugs
👉 @thehaking