Re: The Achilles Heel Of Secure Boot: Certificate Revocation
John McCue <[email protected]>
| Newsgroups | comp.misc |
|---|---|
| Organization | A noiseless patient Spider |
| Message-ID | <[email protected]> |
Lawrence D'Oliveiro <[email protected]> wrote: <snip> > <https://arstechnica.com/information-technology/2020/07/new-flaw-neuters-secure-boot-but-theres-no-reason-to-panic-heres-why/>. <snip> > <https://arstechnica.com/security/2026/07/microsoft-secure-boot-has-been-broken-for-most-of-its-existence/> <snip> > The prospect that attackers have had the means to bypass Secure > Boot for more than a decade through what amounts to > hack-by-numbers scripts isn't much of an endorsement of the > mechanism proposed by Microsoft in partnership with hardware > makers. As mentioned earlier, a key contributor to this debacle is > its complexity. I have never used secure boot and never will. IMO I always believed this is a ploy by Microsoft to lock down PCs similar to what is going on with Smart Phones. But so far it has failed due to pushback by various Linux Companies. If Linux was at the point it was in the 90s, I think M/S would have succeeded. -- [t]csh(1) - "An elegant shell, for a more... civilized age." - Paraphrasing Star Wars