logo

Microsoft script updates bootable media for BlackLotus bootkit fixes

ID: bc646f58-a66a-5459-a77a-5eef18902454

STIX ID: report--bc646f58-a66a-5459-a77a-5eef18902454

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2025-02-05

Date Updated: 2026-04-20

Author: Lawrence Abrams

...
...

Microsoft published a PowerShell script to update Windows bootable media so it uses the new "Windows UEFI CA 2023" certificate as part of staged mitigations for CVE-2023-24932, a Secure Boot bypass exploited by the BlackLotus UEFI bootkit; admins must update and test recovery/install media before enforcement because revoking older certificates can render devices unbootable.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.