Post #3973292
2026-07-21 00:16 UTC
@mjg59@nondeterministic.computer I get how that would allow you to distrust the Windows keys.
But unless you already have an alternate boot CA, you would get locked out.
(or you could be running with boot verification disabled, in which case whether they are trusted or not is irrelevant)
Replies (1)
-
@mjg59@nondeterministic.computer 2026-07-21 00:17
@crlf@infosec.exchange why? The only thing signed with the Windows key is Windows