Windows Secure Boot Certificate Expired — Billions of PCs Affected Including Linux Distros
ID: b8ba6e33-5c06-5c6d-8e8e-35663a34c641
STIX ID: report--b8ba6e33-5c06-5c6d-8e8e-35663a34c641
Feed Name: cybersecurityNews.com
Microsoft’s core Secure Boot certificates issued in 2011 have begun expiring in 2026, affecting over a billion UEFI-capable PCs: systems whose firmware does not receive OEM updates to enroll Microsoft’s 2023 replacement certificates will no longer accept new DB/DBX updates or Windows bootloader updates, leaving them unable to blacklist new bootkits at the firmware level and potentially blocking future feature updates; the report outlines a two-step remediation (OEM firmware update then Windows certificate update), Linux shim and fwupd considerations, and enterprise deployment guidance.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
