Microsoft’s Secure Boot has been broken for a decade and no one noticed until now

Security researchers at ESET discovered that Microsoft's Secure Boot feature has been vulnerable for a decade due to unrevoked 'shims' used for Linux compatibility. These flaws allow attackers to bypass firmware protections and install persistent malicious software.
Why it matters
This vulnerability exposes millions of Windows and Linux devices to deep-level firmware attacks that persist even after operating system reinstallation.
SECURE BOOT NEEDS A REBOOT Microsoft’s Secure Boot has been broken for a decade and no one noticed until now Old and forgotten “shims” Microsoft failed to revoke have made Secure Boot bypasses simple.
The article provides a technical report on a security failure without political bias.
Get smarter about the news
Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.
Create free accountAlready have an account? Sign in