Skip to main content

Dell’s new security feature protects your system from the second it boots up

Dell XPS 13 (Skylake)
Bill Roberson/Digital Trends
As far as modern cyber security has come, it’s still tricky to protect a system before it boots up. The UEFI (Unified Extensible Firmware Interface, still commonly referred to as a BIOS) that launches before the OS is vulnerable to malware, too, and often reinstalling the OS or even replacing the hard drive won’t rid the system of infection. Dell has a new plan to protect that essential part of any system called , and it’s actually pretty simple, according to PCWorld.

During the bootup process, the system grabs a snapshot of the UEFI using a method called SHA (Secure Hash Algorithm.) The algorithm converts the entire image of the UEFI into a long code, or hash, which can be compared to other hashes without exposing the actual data inside. This hash is stored temporarily in the SRAM of the machine, a part of the CPU cache not normally accessible to software, and sent securely to Dell’s servers, where it’s checked against a hash of the verified UEFI. If the two codes match, the system boots normally without sending an error report.

If a discrepancy between the two versions is found, however, the system automatically reports back to Dell, and in turn Dell alerts the IT company associated with the affected machine. It doesn’t actually plug the hole or stop the device from booting, as it doesn’t match the data until after the OS launches, but raising a red flag allows an IT professional to come resolve the issue. Unfortunately, that still involves shutting the system down and flashing clean firmware by hand, but Dell is working towards the automation of that process as well.

There’s already one system in place on enterprise computers for protecting the UEFI, called Microsoft Measured Boot, that uses a Trusted Platform Module. The TPM is built into some systems and smartphones, with its own microprocessor that verifies the system’s BIOS settings to only launch verified firmware. This method requires actual hardware to be installed inside the system, however, to create an isolated layer, so it has to be included from the start.

BIOS verification is more important in enterprise situations than in personal use, although it’s a feature that Dell will make available on Precision, OptiPlex, and XPS PCs, as well as Venue Pro tablets. BIOS verification will join a number of other features in Dell’s Endpoint suite, which provides spyware removal, anti-virus, firewall, and browser security from end to end in enterprise setups. It will cost extra to protect a system’s UEFI from malware, and there’s no word yet on exactly how much or when the feature will actually roll out.

Editors' Recommendations

Brad Bourque
Former Digital Trends Contributor
Brad Bourque is a native Portlander, devout nerd, and craft beer enthusiast. He studied creative writing at Willamette…
Scores of people are downgrading back to Windows 10
The screen of the Galaxy Book4 Ultra.

Microsoft continues to struggle with the adoption of Windows 11 among its users. Recent data from Statcounter reveals a notable decline in the operating system’s market share, specifically compared with Windows 10.

After reaching an all-time high of 28.16% in February 2024, Windows 11 has experienced a drop, falling below the 26% mark.

Read more
The ASUS ROG Ally handheld gaming PC has a nice discount today
Starfield running on the Asus ROG Ally.

If you love the power of gaming PCs and the portability of the Nintendo Switch, you should think about getting a handheld gaming PC like the Asus ROG Ally. If you're interested, it's currently on sale from Walmart with an $87 discount that pulls its price down to $400 from $487. It's a pretty popular device so we expect this offer to attract a lot of attention, which means it's probably not going to last long. If you want to get this handheld gaming PC for this cheap, you should proceed with the transaction immediately.

Why you should buy the Asus ROG Ally handheld gaming PC
It's the version of the Asus ROG Ally with the AMD Ryzen Z1 Extreme that's listed in our roundup of the best handheld gaming PCs, but the Asus ROG Ally Z1 is still a worthwhile purchase because it gives you a gaming PC that you can bring with you wherever you go. Unlike a gaming laptop that's still pretty bulky with its large screen and keyboard, the Asus ROG Ally takes on the form of a portable gaming console like the Nintendo Switch, but with Windows 11 pre-installed as a familiar operating system to navigate and launch the best PC games.

Read more
The HP Victus gaming PC with RTX 3060 has a $550 discount
The HP Victus 15L gaming PC in white.

Gamers don't need to spend more than $1,000 if they want to buy a new gaming PC because there are affordable options like the HP Victus 15L gaming desktop. From its original price of $1,400, you can get it for just $850 as HP has applied a $550 discount on this machine. However, you shouldn't delay your purchase because there's no assurance that the gaming PC will still be 39% off tomorrow. If you want to make sure that you get it for less than $1,000, you're going to have to complete the transaction for it within the day.

Why you should buy the HP Victus 15L gaming desktop
You shouldn't expect the HP Victus 15L gaming desktop to match the performance of the top-of-the-line models of the best gaming PCs, but it's surprisingly powerful for its cost. Inside it are the 13th-generation Intel Core i7 processor and the Nvidia GeForce RTX 3060 graphics card, with 16GB of RAM that our guide on how much RAM do you need says is the best place to start for gaming. It's enough to play today's best PC games without any issues, and it may even be capable of running the upcoming PC games of the next few years if you're willing to dial down the settings for the more demanding titles.

Read more