<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[UEFI Secure Boot Forbidden Signature Boot dbx]]></title><description><![CDATA[<p dir="auto">I am on a dual boot Debian 12 / Win11 and I get a firmware upgrade in debian with this text:</p>
<p dir="auto">_Some of the platform secrets may be invalidated when updating this firmware. Please ensure you have the volume recovery key before continuing.</p>
<p dir="auto">This updates the list of forbidden signatures (the "dbx") to the latest release from Microsoft.</p>
<p dir="auto">Some insecure bootloaders were added, due to security vulnerabilities that allowed an attacker to bypass UEFI Secure Boot. The additional entries were from:<br />
• Baramanudi Management Suite<br />
• EAZ EasyFix<br />
• Finland Matriculation Examination Board<br />
• NTC IT ROSA Linux<br />
• PC-Doctor<br />
• Spyrus WTGCreator<br />
• WhiteCanyon blancco<br />
• Some ancient shim releases for OpenSUSE, Oracle and Red Hat_</p>
<p dir="auto">My questions are:</p>
<ul>
<li>Does dual boot have extra riscs?</li>
<li>The volume recovery key: is that the luks encryption key?</li>
<li>Any tips how to get it?</li>
</ul>
<p dir="auto">Any help much appreciated.</p>


<div class="row mt-3"><div class="col-12 mt-3"><img class="img-thumbnail" src="https://lemmy.ml/pictrs/image/11c3dabd-f4a0-48ee-9124-80bcc025a84d.jpeg" alt="Link Preview Image" /></div></div>]]></description><link>https://forum.ieu.app/topic/e1a4c79f-8912-479d-a194-5715694c8fcf/uefi-secure-boot-forbidden-signature-boot-dbx</link><generator>RSS for Node</generator><lastBuildDate>Sat, 05 Sep 2026 20:57:38 GMT</lastBuildDate><atom:link href="https://forum.ieu.app/topic/e1a4c79f-8912-479d-a194-5715694c8fcf.rss" rel="self" type="application/rss+xml"/><pubDate>Sat, 22 Aug 2026 07:05:42 GMT</pubDate><ttl>60</ttl></channel></rss>