That can only happen after it starts running arbitrary user code, and even then the exploit can't modify anything signed or it wouldn't validate on the next bootup. Even in the case where someone has spend the $99 to sign malware you can identify and revoke it and break the re-exploitation cycle. The benefit is an immutable set of tools early in boot to clean out malware.