Surface Duo sports 'custom engineered UEFI' to directly address security threats
After launching the Surface Duo last week, Microsoft published documentation on its approach to security in hte new device. A lot of the security features Microsoft outlines are standard for any Android phone. However, there are a couple of custom bits that stand out.
The most notable addition is Microsoft's "custom engineered" Unified Extensible Firmware Interface (UEFI). This gives Microsoft "full control" over firmware components, and it's somethign the company already uses in its other Surface devices.
"Microsoft delivers Enterprise-grade security to Surface Duo by writing or reviewing every line of firmware code in house, enabling Microsoft to respond directly and agilely, to potential firmware threats and to mitigate supply chain security risks," Microsoft says in its documentation. Notably, that means Microsoft could act independently and more quickly address any firmware vulnerabilities it detects.