← Back to Feed

Forgotten UEFI shims undermining Secure Boot

July 14, 2026 · WeLiveSecurity · Severity: HIGH

ESET researchers discovered 11 vulnerable UEFI shim bootloaders signed by Microsoft that allow attackers to bypass UEFI Secure Boot by exploiting decade-old vulnerabilities.

Key Takeaways

  • ESET found 11 vulnerable UEFI shim bootloaders signed by Microsoft.
  • Attackers can bypass UEFI Secure Boot using decade-old vulnerabilities.
  • The signed shims undermine the security of Secure Boot.
☕ Buy a Coffee