Insyde Software Leads Firmware Security Discussions at FirmVuln26 Workshop During VulnCon 2026
Company’s CTO and Security Strategist Present Practical Guidance for Securing UEFI Firmware

HILLSBORO, OR – April 8, 2026 – Insyde® Software, a leading provider of UEFI and OpenBMC firmware solutions, today announced its participation at FirmVuln26, an International Workshop on Firmware Security Vulnerabilities, being held on April 13, 2026, in Scottsdale, Arizona as part of the larger VulnCon 2026 event.
FirmVuln26 brings together researchers and industry leaders to address real-world firmware vulnerabilities and strengthen development practices across the ecosystem. At the workshop, Insyde will deliver two sessions focused on practical firmware security implementation:
- Meeting the NSA’s Guidance for Managing UEFI Secure Boot – Kevin Davis, Security Strategist will examine how evolving threats such as BootHole, BlackLotus, and PKFail have driven a shift from static Secure Boot enablement to active key management and policy enforcement, and how InsydeH2O® enables organizations to operationalize these controls and mitigate persistent firmware threats.
- Firmware-Specific Security Guidelines – Tim Lewis, CTO will present a focused framework for identifying and mitigating the most common sources of UEFI firmware vulnerabilities, outlining seven high-risk technology areas and actionable coding practices for large-scale firmware development teams.
“Firmware sits beneath every security control an organization deploys, which makes it an increasingly attractive target for sophisticated attackers,” said Tim Lewis, CTO of Insyde Software. “At FirmVuln26, we’re focused on moving the conversation from awareness to action — giving firmware teams the specific, practical guidance they need to build more hardened systems.”
About Insyde Software
Insyde Software (www.insyde.com) is a leading worldwide provider of UEFI firmware, OpenBMC-based systems management solutions and custom engineering services for companies in the mobile, server, desktop, embedded and edge computing industries. The company is publicly held (6231.TWO) and headquartered in Taipei, Taiwan with U.S. headquarters in Westborough, MA. The company’s customers include the world’s leading computing, communications and storage designers and manufacturers.
Insyde is a trademark or registered trademark of Insyde Software in the United States and other countries. Other names and brands may be claimed as the property of others.
