Microsoft has recently begun replacing expiring Secure Boot certificates on eligible Windows 11 systems running 24H2 and 25H2 ...
Microsoft is rolling out "Secure Boot Allowed Key Exchange Key (KEK) Update," which requires a system reboot to finish ...
Microsoft confirms systems without updated Secure Boot certificates will boot normally but lose some security protections.
In June 2025, Microsoft announced that, in June 2026, it would begin deprecating Secure Boot certificates of Windows systems from 2011, which were superseded by their 2023 counterparts.
Windows 10 KB5078885 ESU out with Secure Boot 2023, replacing expiring Secure Boot certificates from 2011. But it's a staged roll out.
在最初版本中,微软明确警告若不及时更新,电脑虽能正常启动,但将停止接收针对启动管理器和安全启动组件的关键安全补丁,使设备面临Bootkit恶意软件劫持系统的风险。
近期,微软在处理Windows 10和Windows 11的安全启动(Secure Boot)更新时,经历了一场引人关注的波折。早在2024年初,微软就已预告,现有的安全启动密钥将于2026年正式到期,因其已使用近15年。为了确保用户能平稳过渡,微软在今年2月发布的补丁中,通过更新KB5077181推送了新的安全证书,并建议用户在2026年6月前完成安装。
Secure Boot protects your PC against bootkit malware. The Windows update refreshes expiring Secure Boot certificates. To install, head to Settings and select Windows Update. I typically advise Windows ...
Among the requirements for installing Windows 11 are two security features: Trusted Platform Module (TPM) version 2.0 and Secure Boot. As we’ve documented before ...
This article describes how to enable Secure Boot to install Windows 11. How Do I Enable Secure Boot? The easiest way to enable Secure Boot is to do so through UEFI. It's typically listed as one of the ...
Earlier this week, Microsoft released a patch to fix a Secure Boot bypass bug used by the BlackLotus bootkit we reported on in March. The original vulnerability, CVE-2022-21894, was patched in January ...
One of the hardware requirements for Windows 11 is Secure Boot, and its certificates are expiring soon. Here is what you need to know about that. Secure Boot is a ...