#secureboot

23 posts · Last used 4d

Back to Timeline
Ein Microsoft-Zertifikat ist Ende Juni abgelaufen – seitdem entscheidet Microsofts Signatur, ob dein Linux-Rechner überhaupt noch hochfährt. Der Artikel zeigt konkrete Lösungen und ordnet ein, warum das ein Souveränitätsproblem ist. Reden wir drüber! https://www.chrislo.de/blog/2026-08-10-07-25-18-microsoft-entscheidet-ob-dein-linux-startet/ #chrislo #digitaleunabhängigkeit #Linux #Microsoft #SecureBoot #UEFI #ITSicherheit #DigitaleSouveränität #OpenSource #Datenschutz
0
0
0
Gabriele Svelto @gabrielesvelto@mas.to · Aug 05, 2026

I've updated my tutorial on how to enable SecureBoot on Gentoo using shim & GRUB, there's a few significant changes compared to the first version I made:

  • There are less manual steps as I rely more on the improvements in Gentoo's GRUB package
  • There is no need to regenerate the bootloader when installing or removing kernels
  • Post-install scripts are provided to automatically update both bootloaders

https://www.setphaserstostun.org/posts/secure-boot-on-gentoo-with-shim-grub/

#Gentoo #SecureBoot

5
0
2
Gecos Analytics @gecos_analytics@toot.community · Jul 20, 2026
Replying to @gecos_analytics@toot.community
In 2011 Microsoft seems to have attempted to prevent installation of alternative operating systems on PCs using a new technology called UEFI "Secure Boot". The worst case scenario never materialized and installing "alternative" operating systems is still possible. 5/21 #microsoft #uefi #secureboot
0
1
0
cryptax @cryptax@mastodon.social · Jul 26, 2026
Sunday morning, and currently fixing an unhappy update on Linux Mint 22.3 yesterday. To my understanding, Mint is not the cause, but it's the Nvidia drivers which were not rebuilt and signed (Secure Boot) correctly. Fortunately, ChatGPT is helping me out here or this would have been a horrible mess... :( #linux #nvidia #dkms #secureboot
1
1
0
k3ym𖺀 @k3ym0@infosec.exchange · Jul 21, 2026
Frog and Toad Are Chainloaded frog put the UEFI app signatures in a box. there. now we will not boot any more unsigned UEFI apps. but we can disable SecureBoot said toad. that is true said frog. that is true. frog knew. frog always knew. the box was never locked. toad found the off switch in four seconds. three weeks of signed shim work gone. frog does not cry frog just stares at the mokutil prompt #infosec #SecureBoot
5
1
2
Daily CyberSecurity @DailyCyberSecurity@infosec.exchange · Jul 21, 2026
Discover the major challenges IT admins face with the UEFI CA 2023 update. Learn why Microsoft, HP, and other OEMs cause BitLocker recovery loops. #UEFICA2023 #SecureBoot #Microsoft #Windows11 #ITAdmin #CyberSecurity https://securityonline.info/uefi-ca-2023-update-issues/?utm_source=mastodon&utm_medium=jetpack_social
0
0
0
Christoph Schmees @PC_Fluesterer@social.tchncs.de · Jul 18, 2026
Secure Boot: Die bittere Wahrheit Bereits die UEFI genannte Erweiterung des guten alten BIOS litt und leidet unter unnötiger Komplexität und damit zwangsläufig unter diversen Sicherheitslücken. Manch eine von denen riecht, als ob sie nicht einfach auf handwerkliche Fehler zurückgeht oder der überbordenden Komplexität geschuldet ist, sondern eine absichtliche Hintertür darstellen könnte. Eines der Probleme war und ist, dass Schädlinge von Windows aus bis auf das UEFI durchgreifen können und sich dort dauerhaft einnisten. So können sie sogar Neuinstallationen überleben. - Zum angeblichen Schutz des UEFI hat Microsoft (MS) Secure Boot (SB) ersonnen und mit seiner Marktmacht auch durchgesetzt. ... Weiterlesen: https://www.pc-fluesterer.info/wordpress/2026/07/18/secure-boot-die-bittere-wahrheit/ #linux #Microsoft #sicherheit #wissen #uefi #secureboot
2
2
5
Pixelcode 🇺🇦 @pixelcode@social.tchncs.de · Jul 15, 2026
Something I terribly hate about #Linux is its unwillingness to hibernate with #SecureBoot enabled. I don't want to keep my computer idle for several hours just to preserve the states of the currently running programs. #Windows' user experience is so much more convenient here: It automatically shuts down to conserve energy when you don't use the computer for a while, and when you boot again, it restores everything in memory from the #swap file, so you can continue without measurable interruption.
4
1
1
Pixelcode 🇺🇦 @pixelcode@social.tchncs.de · Jul 15, 2026
Replying to @pixelcode@social.tchncs.de
Linus #Torvalds' justification is security: If secure boot is enabled, this must mean that the user does not wish the memory to be filled with data from the disk because it is untrusted. (Correct me if I'm wrong.) However, is it really still part of the boot process when you load the #SwapFile into memory? Also, if you distrust the disk, why would you even load the operating system from it? By Linus' logic, #Linux should only support #SecureBoot in combination with disk encryption. 🤔
1
1
0
Multi Purr Puss :unverified: @platymew@layer8.space · Jul 03, 2026
Fascinating, that this 7th gen Intel box, a HP EliteDesk 800 G3 SFF still receives firmware updates! #Ubuntu and #fwupd is pretty neat. This one updates #SecureBoot stuff, which i'm not using on this box. This box will be replaced soon - i'm leaving this decision to "the next guy" ...let's see how well this box re-sells, without RAM. 😅
0
0
0
c't Magazin @ct_Magazin@social.heise.de · Jul 01, 2026
Bit-Rauschen, der Prozessor-Podcast: Das Secure-Boot-Problem von Windows 11 Microsoft werkelt an der Schutzfunktionen UEFI Secure Boot herum, sodass manche Rechner nicht mehr starten: Folge 2025/13 des Podcasts Bit-Rauschen. https://www.heise.de/meinung/Bit-Rauschen-der-Prozessor-Podcast-Das-Secure-Boot-Problem-von-Windows-11-11336226.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&utm_source=mastodon #BitRauschen #IT #Journal #UEFI #SecureBoot #Windows #news
6
0
7
c't Magazin @ct_Magazin@social.heise.de · Jun 16, 2026
heise+ | Ubuntus Linux-Bootloader abgespeckt: Weniger Funktionen für mehr Sicherheit Die Ubuntu-Entwickler planen, den Bootloader Grub zu beschneiden: Keine Grafiken mehr, kein LVM, kein RAID, kein Btrfs. Das soll Angriffswege reduzieren. https://www.heise.de/hintergrund/Ubuntus-Linux-Bootloader-abgespeckt-Weniger-Funktionen-fuer-mehr-Sicherheit-11250737.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&utm_source=mastodon #IT #Journal #Linux #Microsoft #SecureBoot #Security #Ubuntu #UEFI #news
2
0
4
Fedora Project @fedora@fosstodon.org · Jun 12, 2026
PSA regarding a change in how Secure Boot will work in Fedora soon. The change isn't urgent, but it is something you should take a look at. If you have any questions about this, please ask in our forum. 🙏 ➡️ https://fedoramagazine.org/expiration-of-microsoft-secure-boot-keys/ Forum: https://discussion.fedoraproject.org/c/ask/6 #Fedora #Linux #OpenSource #Cybersecurity #InfoSec #SecureBoot
45
6
36
Thorsten Leemhuis (acct. 4/4) @thleemhuisfoss@social.tchncs.de · Jun 12, 2026

Reminder: Bleibt entspannt bezüglich der ablaufenden Zertifikate für #UEFI #SecureBoot, eure bestehenden #Linux-Installationen sollten alle weiterhin booten.

Vereinfacht gesagt stört sich nämlich kaum eine Firmware daran, wenn der Boot-Loader eine Signatur eines mittlerweile abgelaufenen Zertifikats trägt – anders als ein Webbrowser, der in so einem Fall den Besuch einer Webseite blockiert.

Im Detail gibt es naturgemäß doch einige Tücken, die euch über kurz oder lang ereilen könnten. Siehe dazu folgende Texte:

10
0
15