← Back to Feed
Forgotten UEFI shims undermining Secure Boot
July 14, 2026 · WeLiveSecurity · Severity: HIGH
ESET researchers discovered 11 vulnerable UEFI shim bootloaders signed by Microsoft that allow attackers to bypass UEFI Secure Boot by exploiting decade-old vulnerabilities.
Key Takeaways
- ESET found 11 vulnerable UEFI shim bootloaders signed by Microsoft.
- Attackers can bypass UEFI Secure Boot using decade-old vulnerabilities.
- The signed shims undermine the security of Secure Boot.