← Back to Feed

Forgotten UEFI shims undermining Secure Boot

July 14, 2026 · WeLiveSecurity · Severity: HIGH

ESET researchers discovered 11 vulnerable UEFI shim bootloaders signed by Microsoft. These bootloaders can be exploited to bypass UEFI Secure Boot, undermining a critical security feature.

Key Takeaways

  • ESET found 11 vulnerable UEFI shim bootloaders signed by Microsoft.
  • These bootloaders allow attackers to bypass UEFI Secure Boot protections.
  • The discovery highlights risks in the Secure Boot chain of trust.
☕ Buy a Coffee