Make sure you've updated before the deadline.
Microsoft, and its original equipment manufacturer (OEM) partners, are planning to update Secure Boot on Windows Unified Extensible Firmware Interface (UEFI) PCs, starting this year, per a Tuesday ...
Microsoft has recently begun replacing expiring Secure Boot certificates on eligible Windows 11 systems running 24H2 and 25H2 ...
The Key Exchange Key (KEK) acts as an authority that allows Microsoft to update the other databases, like the DB and DBX that ...
Event ID 1798 occurs when an attempt is made to add the Microsoft Windows Production PCA 2011 certificate; this is an old and less secure certificate compared to UEFI CA 2023. In this post, we will ...
In June 2025, Microsoft announced that, in June 2026, it would begin deprecating Secure Boot certificates of Windows systems ...
TL;DR: Secure Boot certificates in Windows 10 and 11 will expire by June 2026, risking system security and compatibility. Microsoft is issuing new certificates through updates and OEM firmware ...
Earlier this week, Microsoft released a patch to fix a Secure Boot bypass bug used by the BlackLotus bootkit we reported on in March. The original vulnerability, CVE-2022-21894, was patched in January ...