Comment on UEFI shell vulnerabilities allow attackers to bypass Secure BootparentComments−gsora10moSecure boot-enabled devices allow you to do anything you want, even enrolling your own keys. What's stopping you from doing that?−sidewndr4610moThere is no technical requirement for Secure boot to allow enrolling your own keys. Also, have you ever actually tried to enroll your own keys? The process for each and every board is basically unique−saghm10moTheoretically nothing, but there's even less stopping me from turning it off instead
Comments
Secure boot-enabled devices allow you to do anything you want, even enrolling your own keys. What's stopping you from doing that?
There is no technical requirement for Secure boot to allow enrolling your own keys. Also, have you ever actually tried to enroll your own keys? The process for each and every board is basically unique
Theoretically nothing, but there's even less stopping me from turning it off instead