I wrote a blog post "Breaking Through Another Side: Bypassing Firmware Security Boundaries". It's a first part of the series based on our #BHUSA research with Alexandre Gazet.
HW/FW Security != Summary of all Security Boundarieshttps://medium.com/@matrosov/firmware-security-boundaries-85807d3fe604 …
Wonderful post. Good info. Been working on device Fw update over UEFI & ensuring security at FW level w.r.t specs PlatformFwResiliency.NIST.SP.800–193, USB Type-C authentication. But as you have mentioned its not good enough. We should look at the system as a whole.