11 Old Microsoft-Signed Linux UEFI Shims Could Let Attackers Bypass Secure Boot
Cybersecurity researchers at ESET have discovered 11 old, Microsoft-signed UEFI shim bootloaders that could be exploited to bypass Secure Boot protections on…
Cybersecurity researchers at ESET have discovered 11 old, Microsoft-signed UEFI shim bootloaders that could be exploited to bypass Secure Boot protections on…
CVE-2026-10797 refers to a long-patched issue in UEFI shim that allowed the certificate-based revocation mechanism to be bypassed by modifying the second-stage…
Bootkitty is a UEFI bootkit that can be deployed by exploiting vulnerable UEFI shim bootloaders to bypass Secure Boot and gain persistent…
HybridPetya is a UEFI bootkit that can be deployed by exploiting vulnerable UEFI shim bootloaders to bypass Secure Boot and gain persistent…
BlackLotus is a UEFI bootkit that can be deployed by exploiting vulnerable UEFI shim bootloaders to bypass Secure Boot and gain persistent…
The CERT Coordination Center issued an advisory about the vendor-specific bootloaders not being updated to address vulnerabilities in the upstream shim project.
CVE-2026-8863 is a vulnerability in old Microsoft-signed UEFI shim bootloaders that allows attackers to bypass Secure Boot protections and execute arbitrary code…
The Gentlemen ransomware-as-a-service (RaaS) operation is actively developing and maintaining a suite of endpoint detection and response (EDR) killers that it hands…
CERT/CC issued an advisory about multiple vendor-signed UEFI applications vulnerable to Secure Boot bypass via BYOVD attacks, impacting several hardware vendors.