Agregátor RSS

FAQ: What you need to know about expiring Windows Secure Boot certificates

Computerworld.com [Hacking News] - 26 Květen, 2026 - 12:00

Microsoft is preparing to make a significant change to the Secure Boot system in Windows that will impact operations for both clients and servers.

In a nutshell: The Secure Boot certificates that Microsoft issued 15 years ago are being replaced by newer ones, with the older certificates set to expire beginning in June. To continue to receive the most up-to-date security protections for the Windows boot-up process, individual users and IT administrators alike need to make sure their Windows devices have the new Secure Boot certificates installed.

Have questions? Of course you do. Here are answers to eight key questions about the Secure Boot certificate updates.

What is Secure Boot?

Secure Boot is a security feature that verifies that all firmware-based software is signed by a trusted certificate when Windows starts up. If something doesn’t match, it gets blocked. This all happens immediately on boot, before Windows or anything else loads.

Secure Boot is a part of the UEFI firmware standard, which replaced the older BIOS model for modern PCs. It was added to UEFI in 2011 so that only trusted, signed code could run during startup.

Microsoft issued its original Secure Boot certificates in 2011 and introduced Secure Boot as an optional feature in Windows 8. It remained optional in Windows 10, since UEFI had not had much time to penetrate the market when Windows 10 was released in 2015. But Secure Boot became mandatory in Windows 11. Windows 11 came out in 2021, giving UEFI-powered systems plenty of time to saturate the marketplace.

What’s happening with Windows Secure Boot certificates?

To keep up with emerging threats, Microsoft in 2023 issued new Secure Boot certificates to replace the 2011 versions. Those began rolling out on Windows devices in 2024, and according to Microsoft, nearly all devices shipped in 2025 and later already include the 2023 certificates.

However, most older devices with Secure Boot enabled (those manufactured from 2012 to 2024) have been relying on the 2011 certificates — and those certificates begin expiring in June.

There are three Windows Secure Boot certificates expiring this year:

  • Microsoft Corp. KEK CA 2011: authorizes changes to the Secure Boot database
  • Microsoft UEFI CA 2011: signs third-party drivers to allow hardware components to load its firmware during boot
  • Microsoft Windows Production PCA 2011: signs the Windows bootloader itself, the core piece of software that loads Windows from your hard drive into memory

The first two certificates will expire on June 27; the third will expire on October 19.

For devices that didn’t ship with the 2023 certificates pre-installed, Microsoft is now rolling out those new certificates via Windows Update.

What happens to devices that don’t have the updated certificates after the old ones expire?

Lacking the new certificates, your PC keeps working and you’ll still receive regular Windows updates, but the computer loses the ability to receive security updates for the boot process. New protections for Windows Boot Manager won’t install. Updates to the Secure Boot database won’t apply. Revocation lists that block known malicious software won’t update. Your system is essentially defenseless against emerging boot-level threats.

Over time, not having the current certificates may also lead to compatibility issues with newer operating systems, firmware, hardware, or Secure Boot–dependent software.

How are Secure Boot certificates updated?

For most devices that have Windows updates managed by Microsoft (this includes consumer devices and some business and education devices), the new certificates will be installed automatically via Windows Update as part of the regular monthly update process, with no additional action required. Microsoft has been gradually rolling out the new certificates since June 2025, so your device may have them already.

Some devices may require a separate firmware update from the device manufacturer before the system can apply the new Secure Boot certificates. That’s because the new certificates need to be written into your motherboard’s UEFI databases that Secure Boot uses during the boot process. HP, Dell, Lenovo, and other major PC manufacturers have been releasing BIOS updates specifically to ensure their systems can properly accept the new certificates. (See also “What else should I know about the Secure Boot certificate updates” later in the story.)

Microsoft recommends that customers check their Original Equipment Manufacturer (OEM) support pages for any applicable firmware updates and install them where needed. Microsoft maintains a list of OEM support pages for Secure Boot update readiness.

Devices managed by organizations may follow different update processes and typically require IT administrator action. Microsoft has a comprehensive “Secure Boot Certificate updates: Guidance for IT professionals and organizations” mini-site that covers verifying Secure Boot status, preparation, firmware considerations, deployment options (including automated deployment), monitoring and remediation, troubleshooting, and more.

Which devices will get the updated certificates automatically?

Only devices running Windows versions currently supported by Microsoft will get the updated Secure Boot certificates:

Out-of-support Windows versions will not receive the new certificates.

As noted above, Microsoft-managed Windows client devices will have the new Secure Boot certificates delivered automatically through Windows Update. The new certificates will not be delivered automatically in IT-managed environments.

How do I know if the new Secure Boot certificates have been installed?

Individuals and business/education users with Microsoft-managed updates can check Windows Security > Device security > Secure Boot. Here you’ll find badges and status messages indicating whether your device is fully updated and if you need to take action. See Microsoft’s “Secure Boot certificate update status in the Windows Security app” support page for details.

What else should I know about the Secure Boot certificate updates?

With the April 2026 Windows security update and upcoming monthly updates, some devices may experience one additional reboot during installation. This is the one-time restart that applies the new Boot Manager after the certificates have been written to firmware — it is expected and documented.

Because Secure Boot is rooted in platform firmware, some environments may require additional steps. These can include specialized hardware configurations, certain virtualized environments where the platform provider manages firmware behavior, or devices that depend on OEM support. Microsoft says it is working closely with hardware and platform partners to ensure broad compatibility and a smooth transition.

In March, tech writer and Windows MVP Ed Tittel wrote a detailed article for Windows Latest about reported Secure Boot certificate update problems; the article includes a list of common issues for motherboards from various vendors. (Tittel also writes for Computerworld.) At help forums such as answers.microsoft.com, TenForums.com, ElevenForum.com, and TechPowerUp.com, he noted, issues reported for desktop PCs, especially custom builds, greatly outnumbered those reported for laptops.

In May, HP published an advisory saying that a faulty BIOS update it issued to users in April may cause its computers to get stuck in a BitLocker Recovery loop that prevents implementation of the 2023 Secure Boot certificates. All commercial HP laptops, desktops, and workstations running Windows 23H2, 24H2, or 25H2 are susceptible to this issue. The advisory includes a manual workaround.

What resources are available for help deploying and troubleshooting the new Secure Boot certificates?

Kategorie: Hacking & Security

Weather Replay je stroj času na počasí. S hodinovým rozlišením vypočítá teplotu i srážky až do roku 1940

Živě.cz - 26 Květen, 2026 - 11:45
Evropští klimatologové z programu Copernicus spustili novou webovou aplikaci Weather Replay, která funguje tak trochu jako Windy s podporou stroje času. Po spuštění se zobrazí 3D globus a vy si budete moci zvolit libovolné datum a čas od půlnoci 2. ledna 1940 až po současnost. Za pár okamžiků se ...
Kategorie: IT News

CERT-In Recommends 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted Attacks

The Hacker News - 26 Květen, 2026 - 11:13
The Indian Computer Emergency Response Team (CERT-In) has issued new guidelines requiring organizations to patch critical security vulnerabilities in internet-exposed systems within 12 hours of being flagged where "feasible" to safeguard against potential threats stemming from threat actors' abuse of artificial intelligence (AI) tools and large language models (LLMs) to automate vulnerability Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

CISA orders feds to patch actively exploited Drupal vulnerability

Bleeping Computer - 26 Květen, 2026 - 10:46
CISA has given U.S. government agencies until Wednesday evening to secure their servers against an SQL injection vulnerability in the Drupal content management system (CMS) that it flagged as actively exploited. [...]
Kategorie: Hacking & Security

Čipy čínské CXMT už na své paměti pájí i americký Corsair [anketa]

CD-R server - 26 Květen, 2026 - 10:00
Zatímco se Donald Trump snaží přesvědčit co nejvíce výrobců, aby používali americké čipy, americký Corsair začal naopak využívat ty čínské. Nebo je to nakonec jinak?
Kategorie: IT News

Takhle měl vypadat elektromobil od Applu, ne nové Ferrari. Kontroverze, umělý zvuk a klíček s e-inkem

Živě.cz - 26 Květen, 2026 - 09:48
Design jednotlivých modelů vozů Ferrari se historicky dělí na krásné a legendární. A pak je tu Ferrari Luce. První elektromobil značky. Na jeho designu pracovalo studio LoveFrom, které založili Marc Newson a Jony Ive – ten je čtenářům Živě.cz dobře známý jako šéfdesignér společnosti Apple, autor ...
Kategorie: IT News

Microsoft: Domain Controller lookup may fail on Windows Server 2016

Bleeping Computer - 26 Květen, 2026 - 09:41
Microsoft has confirmed a new known issue affecting Windows Server 2016 systems that causes domain controller lookups to fail after installing the KB5087537 May 2026 security update. [...]
Kategorie: Hacking & Security

Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO Poisoning

The Hacker News - 26 Květen, 2026 - 09:13
The Iranian state-sponsored threat actor known as Nimbus Manticore (aka Screening Serpens and UNC1549) has been attributed to a fresh campaign using lures impersonating organizations in the aviation and software sectors across the U.S., Europe, and the Middle East following the joint U.S.-Israeli military campaign against the country in late February 2026. The activity, besides embracing Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

7-Eleven data breach exposes personal information of 185,000 people

Bleeping Computer - 26 Květen, 2026 - 09:01
The ShinyHunters extortion gang stole the personal information of over 183,000 people after hacking the systems of convenience store chain giant 7-Eleven in April, according to data breach notification service Have I Been Pwned. [...]
Kategorie: Hacking & Security

Super herní myš jen za 275 Kč. Alzácká Rapture Venom V2 Stealth je tichá, rychlá a modulární

Živě.cz - 26 Květen, 2026 - 08:45
Alzácká herní myš Rapture Venom V2 Stealth zlevnila o 50 % na 275 Kč. • Je tichá, podsvícená a nabízí opletený kabel. • Tahákem je modularita – můžete vyměnit závaží i kryt.
Kategorie: IT News

Čínský humanoid Walker C1 ohromil baletním vystoupením po boku skutečného tanečníka (video)

Živě.cz - 26 Květen, 2026 - 07:45
UBTECH představil humanoidního robota schopného tančit klasický balet • Tento moderní stroj najde hlavní uplatnění ve službách a průmyslu • Výrobce plánuje do roku 2026 vyrábět úctyhodných deset tisíc robotů ročně
Kategorie: IT News

Microsoft cheat sheets: Dive into Windows, Office, and Copilot

Computerworld.com [Hacking News] - 26 Květen, 2026 - 07:40

Need to get up to speed on the latest features in Excel? Wrestling with an old version of Word? Looking to get more out of Windows 11? Computerworld’s cheat sheets are easy-to-use guides to help you navigate Microsoft’s core productivity software.

Here’s a one-stop resource where you can find in-depth stories on several generations of Word, Excel, PowerPoint, and Outlook for Windows, focusing on what’s new in each major release. We’ve also got guides for Windows itself, as well as Microsoft Teams, OneDrive (both in Windows and on the web), OneNote, Loop, Whiteboard, Forms, Visio, Planner, and Power Automate.

Microsoft’s subscription-based office suite, called Microsoft 365, is continually updated with new features, so we periodically refresh the cheat sheets for the “365” versions of Word, Excel, PowerPoint, Outlook, and other apps in the suite. But some companies and individuals will likely stay on older versions of the non-subscription software (Office 2021, for example) for some time to come, so we’ve got cheat sheets for several generations of those products as well.

The biggest change in both Microsoft 365 and Windows in recent years is the widespread integration of Microsoft’s generative AI assistant, Copilot. We’ve got tips to help you get the most out of that tool too, with more on the way.

Windows, Office, and Copilot tutorials and tips Microsoft Copilot Microsoft Copilot tips: 9 ways to use Copilot right

The free version of Microsoft’s generative AI chatbot is available in a standalone app, in the Edge browser, and on the web. Here’s how to make the most of it.

New: 11 cool things Copilot can do in Excel

As Microsoft ramps up Copilot’s capabilities in Excel, the AI tool is becoming genuinely useful for spreadsheet work.

New: Copilot Chat: Your hub for document creation and analysis

Anyone with a Microsoft 365 account can use new AI agents in Copilot Chat to jump-start Word, Excel, and PowerPoint documents — and some users can enlist a special agent to analyze their M365 files. Here’s how.

Microsoft Copilot can boost your writing in Word, Outlook, and OneNote — here’s how

Copilot integration in Microsoft 365 apps makes it a snap to generate first drafts, revise text, and get instant summaries for long docs or email threads. Here’s how to use Copilot for writing assistance in Word, Outlook, and OneNote.

How to curb hallucinations in Copilot (and other genAI tools)

Generative AI chatbots like Microsoft Copilot make stuff up all the time. Here’s how to rein in those lying tendencies and make better use of the tools.

Windows 10 and 11 Windows 11 cheat sheet

To a great extent, Windows 11 looks and works like Windows 10, but there are several minor differences that take some getting used to. We cover all the important changes here, including Copilot integration and new three- and four-finger touchscreen gestures.

Windows 10 cheat sheet

Windows 10 is no longer receiving updates, but if you’re still using this reliable workhorse, here’s a guide to the key features. Don’t miss our list of handy gestures and shortcuts for Windows 10.

Microsoft OneDrive cheat sheet: Using OneDrive in Windows

If you have Windows 10 or 11, you have OneDrive. Here’s how to back up, sync and share files in OneDrive and OneDrive for Business on the Windows desktop.

More tips for Windows 10 and 11 Microsoft 365/Office 365 apps Word for Microsoft 365 cheat sheet

Learn to use the best features introduced in Word for Microsoft 365 in Windows over the past several years. This story covers features introduced in Word 2016, 2019, 2021, and 2024, plus several more exclusive to Microsoft 365 subscribers — and to those with a Microsoft 365 Copilot license.

Related:

Excel for Microsoft 365 cheat sheet

Learn about the most important features introduced in Excel over the past several years, with an emphasis on those exclusive to Microsoft 365 subscribers — and to users with a Microsoft 365 Copilot license.

Related:

PowerPoint for Microsoft 365 cheat sheet

Learn to use the best features introduced in PowerPoint for Microsoft 365 in Windows over the past several years. This story covers the major features introduced in PowerPoint 2016, 2019, 2021, and 2024, plus several more exclusive to Microsoft 365 subscribers — and to those with a Microsoft 365 Copilot license.

Related:

Outlook for Microsoft 365 cheat sheet

Discover all the major features introduced in Outlook 2016, 2019, 2021, and 2024, plus more exclusively for Microsoft 365 subscribers — including a simplified Ribbon that shows only the most commonly used commands.

Related:

Microsoft Loop cheat sheet

Microsoft’s new Loop app provides shared workspaces where teams can collaborate. Our cheat sheet shows you how to use the Loop app.

How to use Loop components in Microsoft 365 apps

What makes Loop particularly useful is the ability to collaborate on content snippets called Loop components across multiple Microsoft 365 apps. Here’s how to use Loop components in Outlook, Teams, and other M365 apps.

Updated: Microsoft Teams cheat sheet: How to get started

Microsoft’s answer to Slack and Zoom, Teams provides group messaging, voice and video calls, and useful integrations with other Microsoft 365 apps. Here’s how to get set up in Teams and find your way around.

Related:

Microsoft OneNote cheat sheet

Part of Microsoft’s Office suite and built into Windows 10 and 11, OneNote is a robust note-taking app that is also available as a free standalone product. Here’s how to get up and running with OneNote.

Related:

Microsoft OneDrive cheat sheet: Using OneDrive for Web

OneDrive for Web lets you save, access, share, and manage your files in the cloud using your favorite browser. Learn how to use the web interface — and Copilot AI with it — for a big productivity boost.

Updated: Microsoft Forms cheat sheet: How to get started

Online forms help you conduct research, collect feedback, test knowledge, and more. Here’s how to use Microsoft Forms to create surveys, feedback forms, quizzes, and other interactive forms.

Microsoft Visio cheat sheet: How to get started

Visio in Microsoft 365 is an excellent tool for creating custom diagrams to illustrate concepts that are difficult to explain through text. Here’s how to use it.

13 tips to get the most out of Microsoft Whiteboard

For Microsoft 365 users, it’s worth adding Microsoft Whiteboard to your collaboration playbook. Here’s how your team can make the most of this digital whiteboard tool.

Updated: Microsoft Planner cheat sheet

Planner gives Microsoft 365 users a built-in task-management tool that small teams can use to track plans, tasks, and progress. Here’s our guide to using Planner on the web and within Microsoft Teams.

Microsoft Power Automate: How to get started

With Power Automate, you can create automated workflows for a wide range of business tasks across multiple apps and services — no coding required. Here’s how to get up and running, along with tips for creating reliable automations.

SharePoint Online cheat sheet

Learn how to find your way around SharePoint Online (the Office 365 version of SharePoint), create sites, share and manage documents, work with calendars, integrate with Outlook and more. Then go beyond the basics in 5 tips for working with SharePoint Online.

More tips for Microsoft 365/Office Office 2021 and 2024 Office 2021 and 2024 cheat sheet

Microsoft 365 may get all the attention, but the classic Microsoft Office suite also gets useful additions in every release. Here’s how to use the best new features in Office 2021 and Office 2024.

Office 2016 and 2019 Word 2016 and 2019 cheat sheet

Learn how to use Word’s live collaborative editing features, Tell Me and Smart Lookup, and the new Translator pane in Word 2019. Also included is a list of handy keyboard shortcuts for Word 2016 and 2019. If you just want to know where to find various commands on the Ribbon, download our Word 2016 and 2019 Ribbon quick reference.

Excel 2016 and 2019 cheat sheet

Now updated for Excel 2019, our guide covers several useful chart types introduced in Excel 2016 and Excel 2019 for Windows, as well as how to use several impressive new data analysis tools. We’ve also got a list of handy keyboard shortcuts in Excel, as well as the Excel 2016 and 2019 Ribbon quick reference.

PowerPoint 2016 and 2019 cheat sheet

Like Word and Excel, PowerPoint 2016 and PowerPoint 2019 for Windows offer Tell Me, Smart Lookup, live collaborative editing and a slew of new chart types. We cover all that plus some handy features introduced in PowerPoint 2019 — not to mention our list of keyboard shortcuts for PowerPoint and the PowerPoint 2016 and 2019 Ribbon quick reference.

Outlook 2016 and 2019 cheat sheet

Outlook 2016 for Windows has been enhanced with Smart Lookup, Tell Me, and features to help you find files you want to attach and keep a tidy inbox. And don’t miss our list of keyboard shortcuts for Outlook 2016 and 2019 and the Outlook 2016 and 2019 Ribbon quick reference.

Office 2013 Word 2013 cheat sheet

Among the major features introduced in Word 2013 are a Start screen, a Design tab, Read Mode, and OneDrive sync. Our guide covers how to use them all and provides handy keyboard shortcuts for Word 2013. There’s also a Word 2013 Ribbon quick reference.

SharePoint 2013 cheat sheet

Learn the basics of navigating and using a SharePoint site, where to go to find some of the customization options, and 5 advanced SharePoint 2013 tips.

Office 2010 Word 2010 cheat sheet

Learn how to use Word 2010’s Navigation pane, image editing tools, text effects and other new features. Also see the list of handy keyboard shortcuts for Word 2010 and our Word 2010 Ribbon quick reference charts.

Excel 2010 cheat sheet

Excel 2010 introduces Sparklines, Slicers, and other enhancements to PivotTables and PivotCharts. Find out how to use those, along with keyboard shortcuts for Excel 2010 and our quick reference for finding your favorite commands on the Excel 2010 Ribbon.

PowerPoint 2010 cheat sheet

Learn how to use PowerPoint 2010’s multimedia editing tools, sharing options and other handy features. As usual, we’ve got keyboard shortcuts for PowerPoint 2010 and a guide to finding old PowerPoint 2003 commands on the PowerPoint 2010 Ribbon.

Outlook 2010 cheat sheet

The Ribbon was only half-present in Outlook 2007, but in Outlook 2010 it’s ubiquitous. Other notable changes include Conversation View to group email messages, Schedule View for scheduling meetings, and an enhanced search function. We show you how to use them all, provide some handy keyboard shortcuts for Outlook 2010 and detail where old Outlook 2003 commands are located in Outlook 2010.

SharePoint 2010 cheat sheet

Unlike earlier versions of SharePoint, SharePoint 2010 is based on the Ribbon interface. Here’s how to find your way around and get started with a SharePoint site.

Windows 8 Windows 8 cheat sheet

Not many people are still using this nightmare of an operating system, which radically overhauled the classic Windows interface in an attempt to make it more like a mobile OS. Just in case, here’s help finding your way around. (But seriously, it’s way past time to upgrade to a newer OS.)

Kategorie: Hacking & Security

Razer Lake už jen u TSMC, Intel část modelů zrušil a některé přejmenoval

CD-R server - 26 Květen, 2026 - 07:40
Razer Lake, nástupce Nova Lake, bude v mnoha ohledech méně ambiciózní projekt, než se původně zdálo. Intel vzdal plány s nasazením vlastního 14A procesu a řadu modelových řad zrušil…
Kategorie: IT News

KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike

The Hacker News - 26 Květen, 2026 - 07:19
A now-patched high-severity security flaw affecting Digital Knowledge KnowledgeDeliver, a Learning Management System (LMS) popular in Japan, was exploited as a zero-day to deliver the Godzilla web shell and ultimately facilitate the deployment of Cobalt Strike Beacon. The vulnerability, tracked as CVE-2026-5426 (CVSS score: 7.5), stems from the use of hard-coded ASP.NET machine keys, leading toRavie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Chystaná novela stavebního zákona posílí práva velkých developerů na úkor spotřebitelů, ochrany přírody a památek

Lupa.cz - články - 26 Květen, 2026 - 05:17
V červenci má začít platit velká novela stavebního zákona. Má zjednodušit a zrychlit řízení. Zároveň však omezí možnosti, jak se bránit developerům omezovat nás i přírodu.
Kategorie: IT News

[webapps] Grav CMS 2.0.0-beta.2 - Remote Code Execution

The Exploit Database - 26 Květen, 2026 - 02:00
Grav CMS 2.0.0-beta.2 - Remote Code Execution

[webapps] Apache HTTP Server 2.4.66 - 'mod_http2' Double-Free Denial of Service

The Exploit Database - 26 Květen, 2026 - 02:00
Apache HTTP Server 2.4.66 - 'mod_http2' Double-Free Denial of Service

[hardware] D-Link DSL2600U - 'rom-0' Admin Password Disclosure

The Exploit Database - 26 Květen, 2026 - 02:00
D-Link DSL2600U - 'rom-0' Admin Password Disclosure

[webapps] Wordpress Temporary Login Plugin 1.0.0 - 'temp-login-token' Authentication Bypass to Account Takeover

The Exploit Database - 26 Květen, 2026 - 02:00
Wordpress Temporary Login Plugin 1.0.0 - 'temp-login-token' Authentication Bypass to Account Takeover
Syndikovat obsah