
On Tue, 7 Mar 2023 10:14:10 +1300, I wrote:
What’s the point of having a revocation list, if you cannot actually revoke anything?
Further to this, yet another serious Secure Boot bug has been uncovered <https://arstechnica.com/information-technology/2023/05/microsoft-patches-secure-boot-flaw-but-wont-enable-fix-by-default-until-early-2024/>. This is one is so bad that fixing it will render useless all existing Windows boot media -- this includes install media (standard and custom), full OS backups, network boot drives, Windows PE boot media -- everything. For this reason, Microsoft is saying it will take a full year to completely roll out the fix. This is to give users time to adapt to the breaking changes. What’s the bet even one year won’t be enough?