Utopia Tech
StrategyAI-assisted1 min read

Long-Lived Vulnerability in Microsoft Secure Boot

Security researchers at ESET discovered that Microsoft's Secure Boot protection has been vulnerable for 13 of its 14 years of existence due to 11 defective firmware images (shims) that remained digitally signed despite known vulnerabilities. These shims, some dating back to 2013, can be exploited using simple techniques to completely bypass Secure Boot protections embedded in device UEFI firmware.

UT

Utopia Tech

July 29, 2026 · 1 min read

Share

Microsoft’s Secure Boot has had a serious vulnerability for most of its existence. An industry-wide standard Microsoft invented to protect Windows, and later Linux, devices from firmware infections has been trivial to bypass for 13 of its 14 years of existence. The discovery was made by researchers at security firm ESET after identifying 11 firmware images, at least one from 2013, that were known to be defective but remained signed by the software company anyway.

The images are known as shims , which were invented to extend Secure Boot to Linux devices and utility software. Using a technique simple enough to be performed by novice hackers, these old, forgotten shims can be used to completely circumvent the protection, which is embedded into the UEFI (Unified Extensible Firmware Interface) of the device’s motherboard.

The gaffe is the result of the failure by Microsoft, which oversees the signing of shims, to revoke the publicly available images once vulnerabilities were found in them.

Originally published at schneier.com

Share
▸ Want a deeper look?

Talk to an architect about applying this to your stack.

60-minute technical evaluation, no obligation. We'll map the ideas in this article to your environment.

Skip to main content