EditorsAbout the SiteComes vs. MicrosoftUsing This Web SiteSite ArchivesCredibility IndexOOXMLOpenDocumentPatentsNovellNews DigestSite NewsRSS

05.17.13

UEFI Restricted Boot Good for Microsoft Agenda, Not for Security

Posted in GNU/Linux, Kernel, Microsoft, Novell at 3:49 pm by Dr. Roy Schestowitz

Lock-in, not security

Lock

Summary: News and analysis of UEFI ‘secure boot’ (lockdown), including the new role played by the Microsoft-funded SUSE

The UEFI Forum contacted me yesterday, seeking to arrange an interview with UEFI executives. I clarified that my intent is to focus on the impact UEFI has on freedom and choice. It’s not just a Microsoft problem, but Microsoft uses a ‘feature’ in UEFI to impede adoption of GNU/Linux.

Novell, which is close to Microsoft not just due to CPTN (Novell was funded by Microsoft and so is SUSE), has had its former developers help spread UEFI [1, 2], much to Microsoft’s chagrin. They did this inside the Linux Foundation. OBS, another Novell project that got into the Linux Foundation, is helping UEFI restricted boot even further. To quote Mr. Larabel: “OBS, the Open Build Service developed largely by openSUSE, has reached version 2.4. With Open Build Service 2.4 comes support for a new package format, Secure Boot signing, and other features.”

“By refusing to bootstrap a compromised system UEFI would offer neither cure nor prevention.”Therein lies the issue with Microsoft influence. Even Torvalds appears to have complained about this influence.

Microsoft did not need restricted boot for security. It is nonsense. Days ago Microsoft announced 33 more security holes in its software (the real numbers are higher, but Microsoft keeps some holes hidden for vanity purposes). Well, that’s where the real security threat exists, not in boot time. Microsoft essentially calls for setting up an alarm system in premises that have neither walls nor fences. Microsoft is also spying on people in the name of 'security' (Skype), leading to this reminder that software freedom matters (“Skype is following your links – that’s proprietary for you”).

By refusing to bootstrap a compromised system UEFI would offer neither cure nor prevention. All it does is prevent people from having choices,

Share this post: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Reddit
  • co.mments
  • DZone
  • email
  • Google Bookmarks
  • LinkedIn
  • NewsVine
  • Print
  • Technorati
  • TwitThis
  • Facebook

If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

Pages that cross-reference this one

2 Comments

  1. Needs Sunlight said,

    May 19, 2013 at 3:05 am

    Gravatar

    With UEFI malware can more easily create a denial of service by triggering a refusal to boot.

    Dr. Roy Schestowitz Reply:

    UEFI restricted boot may be inadequate for those who only boot once in several months,

What Else is New


  1. Links 30/10/2014: GNOME 3.15.1, Red Hat Software Collections 1.2

    Links for the day



  2. Links 29/10/2014: Ubuntu Touch Tablet, Puppy Linux 6.0

    Links for the day



  3. Links 28/10/2014: SUSE Linux Enterprise 12, Canonical OpenStack Distro

    Links for the day



  4. Links 28/10/2014: PiFxOS, The Document Foundation in OSBA

    Links for the day



  5. Microsoft is Bricking Devices With Linux (Yet Again!), So a Microsoft Booster Spins/Paints Linux Devices as 'Fakes'

    Microsoft delivers rogue drivers through Windows Update and they brick Arduino microcontrollers



  6. How Bill Gates Continues to Pass Wealth From the Public to His Own Bank Account

    Having put a universal tax on many things (not just computers) and evaded tax using the classic 'charity' trick, Gates is now buying the media, the schools, politicians etc. and earns as much as 10 billion dollars per year while the public is taught that Gates is a giver, not a hoarder of the worst kind



  7. Links 27/10/2014: Lenovo Unbundling, Linux 3.18 RC2

    Links for the day



  8. IRC Proceedings: September 14th, 2014 – October 25th, 2014

    Many IRC logs



  9. Links 25/10/2014: KDE Mockups, Update on GNOME Outreach Program for Women

    Links for the day



  10. After Infecting Unity -- Successfully -- Microsoft's Partner Xamarin Wants to Infect Unreal Engine With .NET

    Xamarin continues to spread dependence on Microsoft to more gaming frameworks, not just platforms such as GNU/Linux, Android, and even permanent-state devices



  11. Taking Microsoft Windows Off the Grid for Damage to Businesses, the Internet, and Banking Systems

    Microsoft's insecure-by-design software is causing massive damages ([cref 27802 possibly trillions] of [cref 13992 dollars in damages to date]) and yet the corporate press does not ask the right questions, let alone suggest a ban on Microsoft software



  12. City of Berlin Does Not Abandon Free Software, It's Only Tax Authorities

    A Softpedia report that says the City of Berlin is moving to Microsoft Office is flawed and may be based on a poor translation



  13. Nadella a Liar in Chief at Microsoft, Pretending That His Anti-Competitive Practices Are Unfortunately Imposed on Microsoft

    The nastiness of Microsoft knows no bounds as even its assault on GNU/Linux and dirty tricks against Free software adoption are characterised as the fault of 'pirates'



  14. Reuters Writes About the Demise of Software Patents, But Focuses on 'Trolls' and Quotes Lawyers

    How the corporate media chooses to cover the invalidity of many software patents and the effect of that



  15. Links 24/10/2014: Microsoft Tax Axed in Italy, Google's Linux (ChromeOS/Android) Leader Promoted

    Links for the day



  16. Links 24/10/2014: GNU/Linux History, Fedora Delay

    Links for the day



  17. Links 23/10/2014: New *buntu, Benchmarks

    Links for the day



  18. Links 22/10/2014: Chromebooks Surge, NSA Android Endorsement

    Links for the day



  19. Links 21/10/2014: Debian Fork Debate, New GNU IceCat

    Links for the day



  20. Criminal Microsoft is Censoring the Web and Breaks Laws to Do So; the Web Should Censor (Remove) Microsoft

    Microsoft is still breaking the Internet using completely bogus takedown requests (an abuse of DMCA) and why Microsoft Windows, which contains weaponised back doors (shared with the NSA), should be banned from the Internet, not just from the Web



  21. Microsoft 'Loving' GNU/Linux and Other Corporate Media Fiction

    Microsoft has bullied or cleverly bribed enough technology-centric media sites to have them characterise Microsoft as a friend of Free/Open Source software (FOSS) that also "loves Linux"



  22. India May be Taking Bill Gates to Court for Misusing His So-called 'Charity' to Conduct Clinical Trials Without Consent on Behalf of Companies He Invests in

    Bill Gates may finally be pulled into the courtroom again, having been identified for large-scale abuses that he commits in the name of profit (not "charity")



  23. The Problems With Legal Workarounds, Patent Scope, and Expansion of Patent Trolls to the East

    Patent trolls are in the news again and it's rather important, albeit for various different reasons, more relevant than the ones covered here in the past



  24. Links 20/10/2014: Cloudera and Red Hat, Debian 7.7, and Vivid Vervet

    Links for the day



  25. Links 20/10/2014: 10 Years Since First Ubuntu Release

    Links for the day



  26. How Patent Lawyers Analyze Alice v. CLS Bank

    Breaking down a patent lawyer's analysis of a Supreme Court's decision that seemingly invalidated hundreds of thousands of software patents



  27. Is It Google's Turn to Head the USPTO Corporation?

    The industry-led USPTO continues to be coordinated by some of its biggest clients, despite issues associated with conflicting interests



  28. The EPO's Public Relations Disaster Amid Distrust From Within (and EPO Communications Chief Leaves): Part VII

    Amid unrest and suspicion of misconduct in the EPO's management (ongoing for months if not years), Transparency International steps in, but the EPO's management completely ignores Transparency International, refusing to collaborate; the PR chief of the EPO is apparently being pushed out in the mean time



  29. Links 18/10/2014: Debian Plans for Init Systems, Tails 1.2

    Links for the day



  30. Links 18/10/2014: New ELive, Android Expansion

    Links for the day


CoPilotCo

RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

CoPilotCo

Recent Posts