Windows Secure Boot certificates are expiring after more than 15 years
#1
Exclamation 
Quote:Windows 11 and supported Windows 10 PCs will get updates automatically
 
In brief: Secure Boot was originally introduced with Windows 8 as a firmware-based security feature designed to protect the OS from potentially malicious boot code. After more than 15 years, the original Secure Boot certificates are being retired and replaced with newer ones.

Microsoft is reminding users that the Secure Boot ecosystem will soon require a mandatory check-up. The Redmond-backed security protocol, part of the UEFI specification and primarily used on Windows systems, will need new encryption certificates because the older ones are expiring over the next few months.

Nuno Costa, a program manager in Microsoft's Windows Servicing and Delivery division, explained that the original Secure Boot certificates are reaching the end of their lifecycle. Starting in June 2026, the old certificates will no longer be valid.

"As cryptographic security evolves, certificates and keys must be periodically refreshed to maintain strong protection. Retiring old certificates and introducing new ones is a standard industry practice that helps prevent aging credentials from becoming a weak point and keeps platforms aligned with modern security expectations," Costa wrote on the official Windows blog.

Microsoft delivered up-to-date certificates for Secure Boot in 2023, but the originals have been used to validate the boot process since Windows 8. Users and organizations can obtain the newer certificates from several trusted sources, including UEFI firmware updates for compatible motherboards.

Continue Reading...
Reply
#2
What you need to know about the Secure Boot certificate expiration in Windows
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
Mozilla Firefox Browser 148.0.2
Mozilla Firefox Br...harlan4096 — 10:28
QOwnNotes
26.3.6  Added a l...Kool — 10:28
AnyDesk Version 8.0.0 for Linux
AnyDesk Version 8....harlan4096 — 10:27
PrivaZer 4.0.119.1
PrivaZer 4.0.119.1...harlan4096 — 10:26
uBOLite 2026.308.1810 (already released ...
uBOLite 2026.308.1...harlan4096 — 10:26

[-]
Birthdays
Today's Birthdays
avatar (45)walllMIZ
avatar (41)oconyho
Upcoming Birthdays
avatar (44)gapedDow
avatar (38)snorydar
avatar (43)Hectorvot
avatar (51)knowhanPluts
avatar (39)Williamengiz
avatar (46)qaqapeti
avatar (44)battsourIonix
avatar (43)CedricSek
avatar (39)chasRex
avatar (33)uteluxix
avatar (47)piafcflene
avatar (39)Matthewkah
avatar (51)tersfargum
avatar (50)alfreExept
avatar (38)Charlesfibre
avatar (42)napasvem
avatar (44)diploJeoca
avatar (38)francisnj3
avatar (43)artmaGoork
avatar (41)RichardCisee
avatar (38)ykazawu

[-]
Online Staff
There are no staff members currently online.

>