Bonum Certa Men Certa

The UEFI 9/11 - Part VII - This Coming Week Many PCs Will Refuse to Boot "Linux" (Because of Microsoft's Expired Certificate)

posted by Roy Schestowitz on Sep 06, 2025

A simple time bomb: Fake Security, Microsoft, UEFI, 9/11 vs Your O/S

Love it or hate it, more and more people are moving to GNU/Linux and many PCs ship with UEFI. Many existing PCs already have it and have had it for years. Many are configured, by default, to use "secure boot". Many won't be able to cope with certificate rotation (the proprietary firmware blobs are notoriously buggy) and even if updates become available - which is far from a certainty - installing them is super-risky (in part because those are barely tested and are notoriously buggy; a lot can go wrong and if it goes wrong, undoing the harm is almost infeasible for an ordinary person; it's worse than Windows breaking things because this is done closer to the hardware - rendering this a chicken-and-egg problem a la locking oneself out).

This is why throughout the week we'll keep reminding people (here and in the sister site) to turn off "secure boot" or "SecureBoot". It's imperative for people who value reliability and resiliency, uptime, data security etc. Being locked out of one's own machine is a really bad outcome. We saw how it played out before, e.g. in 2020 [1, 2]. This is not security, this is just sheer madness.

Updating firmware is not a good option at this time (or any time). Quoting thelayoff.com on IBM (from yesterday): "Yes, your Lenovo laptop is spying on you and sending your information to China. After all, when you install BIOS updates, who knows what those BIOS updates really do. Do you ? Same as your "Made In China" cell phone and the wireless access points updates. Big Brother is China, not Trump. LOL."

It is not security when some opaque, proprietary blob from China gets put inside your system at a very low level, with access to pretty much everything including external peripherals like backup drives. Having a program running as "root" and allowing remote modifications of firmware is not security either. It's insanity! It is promoted by the same people who advocate Microsoft-controlled 'secure boot'.

Today we'd like to debate some more details and refrain from getting too technical; on Monday and Wednesday we'll be concluding ahead of the actual "9/11" of this monstrosity. When we say "9/11" we refer to Chile's 9/11 moment [1, 2]. We explained several analogies/parallels/parables in prior parts. We won't get political about this. It is about commercial ambitions, not political ideology.

In Part I we introduced the issues in simple terms, in Part II we focused on the attacks on people who merely talked about these issues, Part III primarily tied things together, Part IV named some of the culprits, and Part V advised people to turn off "SecureBoot" (also in the sister site now that we're in September; live and learn). Part VI spoke of the "Serious Harm" that will be caused to many ordinary computer users; many will not even understand what the heck is going on; they're too busy to keep abreast of "Linux news" online and they don't have an LWN subscription. Most of them lack a backup option such as a second PC and never in their lifetime saw a boot menu (they might not know that such a thing exists or how to enter/activate it). Heck, some OEMs already make PCS would not let the users disable "secure boot" or "SecureBoot"; some of them refuse to boot anything but Windows (we're looking at you, Lenovo). The issues are very serious - to the point where those responsible for the monopolistic abuse started attacking my wife [1, 2] and when attacking my wife wasn't enough they joined forces with a dangerously violent Serial Strangler from Microsoft. This is what I get for merely talking about those things.

So we should be talking more about those things.

What is it that's happening to the system? Well, UEFI will be checking the time on the system (there's a system clock) and the firmware can then decide whether to boot or not (or what to boot). Although there are few super-geeks out there who take it a step further (e.g. installing one's own keys), way more than 99% of PCs out there don't have the skills nor the setup. The users don't know how to modify these things. Almost nobody would do that also because it is risky (cannot change the firmware, that's for sure). Consider what happened in Red Hat. Even Red Hat with all its Linux engineers couldn't get this right. It's very risky (you can brick or break your system, so either you get kicked out by UEFI or you break your own system while trying to mitigate).

Don't tell people to open their PCs and remove the clock's battery; it would not work and almost nobody would open a laptop (the modern ones require special screwdrivers).

It is a basically a giant risk. Very much so. Don't try. And you should not have this risk to begin with; this not security but a lie. It was always a lie.

The real solution is, disable "secure boot" or "SecureBoot" while it's still possible. Microsoft and OEMs will try to make it infeasible, at risk of angering people (expected PR toll).

Just like submarine patents, a lot of this problem was "hibernating" for a while, in effect artificially contrived right from the beginning in 2011. And it's not a matter of whether it's coming; it's a question of when.

In collusion with Red Hat and Canonical and enabled by terrible people with their online mob ('cancel brigade'), Microsoft promoted this 'inevitable' outcome. This collusion got the courts off of Microsoft's back with no further investigation after that (saying that shim was somehow a solution). We can still recall a complaint started in Spain but not limited to Spain; the European Commission or European authorities were meant to look into it, but then the Microsofters stepped in, plus they were libelling everyone who did not agree with them. Matthew J. Garrett did this nonstop. He cannot even keep his Web site online (why trust him with your PC?).

Now he openly admits that someone pays him to attack me. He might end up causing serious harm to his sponsors. Judges are beginning to realise both cases - his and the Serial Strangler's - are conjoined and classic abuse of process done from another continent for a large company to gain. Are Free software community folks and Techrights readers up to the task of finishing this job and getting costs ordered against them and maybe the two Directors of the LLP, who facilitated and coordinated this abuse? It's hardly infeasible, based on my research as LIP. This matter will be covered separately some other day.

Other Recent Techrights' Posts

No Slop Found in RSS Feeds, Only in Google News
No slopfarm will survive for very long, certainly it'll go bust as soon as readers (if it had any) know what it is
What the Solicitors Regulation Authority (SRA) and Action Fraud UK Have in Common
Don't let London become the world's "crime capital"
Dr. Andy Farnell on How GAFAM, NVIDIA and Others Lie to People Via the Sponsored Media to Prop Up Lies Under the Guise of "AI"
Lots of key aspects are covered
Richard Stallman Gives Talk in 20 Hours at Ostschweizer Fachhochschule Campus in Rapperswil-Jona
The talk is in English
 
An American War on GNU/Linux, Software Freedom, and British Investigative, Science-Based Reporting - Part III - Very Strong Legal Basis for an Appeal
The case is now being escalated to a Foreign Secretary and former Deputy Prime Minister
Police investigations, lawsuits & Debian leader election candidate shortage
Reprinted with permission from Daniel Pocock
Richard Stallman (RMS) Has Defeated Cancel Culture, a Mostly American Phenomenon
RMS is talking now
Links 09/03/2026: Many Security Breaches and a Pandemic of Censorship
Links for the day
People Who Work or Worked at IBM Hate It
bluewashing is only the first step
Richard Stallman (RMS) Talks in 30 Minutes, Next Stop Bern (Last Stop)
We assume he'll travel back to Boston after that
IBM's Fedora as a Booster of Slop Disguised as Code or Computer Programs
Maybe we should also stop seeing a doctor and instead ask chatbots about symptoms?
Richard Stallman (RMS) Talk Five Hours From Now
there is growing recognition for what he really did for everybody
EPO Strike 10 Days From Now, Planning Assembly Tomorrow, Last Couple of Strikes Had High Participation Rates (1,500-1,600 Staff Went on Strike)
The next strike is in 10 days' time and then there will be another strike
Links 09/03/2026: GAFAM Outsourcing, "MAGA Political Meddling" in EU, Indonesia Bans Social Control Media for Children Under 16
Links for the day
Using Slop (and Slop in Articles) to Attack Copyleft 'on Budget'
This article is pure BS from an anti-GPL and anti-RMS 'activist'
Why The Register MS Sold Out to Microsoft: They're Losing Lots of Money, The Register MS is Bleeding to Death, Based on Its Own Financial Records
With over 6 million pounds in debt (nearly 10 million US dollars) we guess it's likely some other company will take over the site (if it deems it worthwhile)
Microsofters' SLAPP Censorship - Part 7 Out of 200: Like With the Serial Strangler From Microsoft, Misuse of UK-GDPR to Try to Hide Embarrassing Facts
They do and say really bad things, then allege it's a "privacy violation" to mention those things
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Sunday, March 08, 2026
IRC logs for Sunday, March 08, 2026
Gemini Links 09/03/2026: Exponentials and Tailscale
Links for the day
Sloppyleft
Article by Alexandre Oliva
Hard to Replace 'Human Touch'
The reason many people insist on using GNU
The Slop Companies Gamble at Our Economy's Expense and They Know It's a Losing Bet (So It's a de Facto Robbery)
The crash of this bubble isn't just inevitable, it's already happening and receding sporadically because of false announcements about money that does not actually exist (to "buy time")
Suppressing Speech by Blackmail, the Iran Story
When Debian wanted to stage a seemingly legitimate election it needed to have more than one candidate running; so eventually the female partner of a geek rose to the challenge (had no coding skills at all, no technical history in Debian) and lost to the "incumbent German"
Too Focused on Buzzwords the Media is Paid to Saturate the Collective Mind With
Just because companies do really bad things in the digital realm does not imply "AI" or follow from "AI"
Discrimination and Prejudice Against Female Journalists
we can shame people who attack a reporter on the grounds of gender
An American War on GNU/Linux, Software Freedom, and British Investigative, Science-Based Reporting - Part II - Trying to Put People in Prison for Committing the Act of Journalism
This is abuse of process
Attack on Copyright and Copyleft by Code Conversion Is Nothing New, It Predates Slop (Code Produced by LLMs) by Several Decades
Even back in the 90s many people converted programs from one language to another. That could invalidate copyleft (and copyright), which already existed
Almost a Slopless Weekend for "Linux"
Let's hope slop will come to an end or sites will cease linking to slop
Insiders Explain Why IBM is Dying and the Inherent Culture Problem
There are many ways to shave this IBM cat
Links 08/03/2026: Microsoft Lost $400 Million on "Project Blackbird" and Half the States Sue Over Illegal Tariffs
Links for the day
Links 08/03/2026: Cisco Holes Again and "Blatant Problem With OpenAI That Endangers Kids"
Links for the day
Activism/Journalism in Our Blood
one must fight for one's principles
Gemini Protocol in Its Prime
What's particularly neat about Gemini Protocol is that it's fast and cheap
Microsofters' SLAPP Censorship - Part 6 Out of 200: Intentionally Misnaming Women, People Who Offered to Testify That They Too Had Been Subjected to Similar Abuse
Today it is International Women's Day
Even Fedora Leadership Cannot Figure Out the Microsoft Kill Switch/Back Door, 'Secure' Boot
It does not actually enhance security
Bruce Perens: Richard Stallman "Has Achieved His Goal"
Stallman's next talk is tomorrow
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, March 07, 2026
IRC logs for Saturday, March 07, 2026
Gemini Links 07/03/2026: Buying Woodland, Indra 1.3.0 Available, and LLM Exhaustion
Links for the day
The Harder They Attempt to Take Down This Site (and Take Away Liberties), the More People Will See This Site
We'll carry on as usual, as from sunlight comes justice
An American War on GNU/Linux, Software Freedom, and British Investigative, Science-Based Reporting - Part I - A Matter of National Security
Those people are Americans who try to advance the interests of American corporations by weaponising courts abroad
Why They Always Try to Shoot the Messenger (When the Message Harms Profits)
A matter of economics
Coinbase - Like Block - is in Huge Trouble, Its Debt Nearly Doubled in Half a Year
The real reason Block is collapsing is its debt
Starting Another New Series This Evening, It's About American Folly
today commences a series long in the making (years)
Nations Stand to Benefit From Gender Equality and Increased Participation by Women
International Women's Rights Day starts in about 6 hours in the UK
Microsoft is Losing It, Now It's Censoring Its Critics and Sceptics
Whether the measurements made by statCounter are accurate or not, the trends (long-term) typically make sense
WIRED (Conde Nast) Reviews Are Paid-for Marketing Spam, They Change Dates on Old 'Articles' to Make Them Look Relevant and New
The Web is fast becoming a burial ground for ads, trash, spam, and slop
Gemini Links 07/03/2026: Humour, Chilling, and Oversized 'Phones'
Links for the day
Cyber|Show by Andy and Helen Recommended by Techrights and Tux Machines
If your time is limited and you look for informative essays and shows (audio)
Links 07/03/2026: CJEU to Finally Examine Behaviour of the Illegal and Unconstitutional Unified Patent Kangaroo Court, Creative Commons (CC) Hosts Open Heritage Statement Event in Amsterdam
Links for the day
Microsoft's Thailand Problem
It's definitely not Windows
New Lows for Microsoft in Micronesia
GNU/Linux has shown some growth there too
Microsofters' SLAPP Censorship - Part 5 Out of 200: Clearly Not a Security Professional/Expert, Only Ever Pretending to be One
"The Claimant says he is “a computer security expert”, but his background and his track record in the education sense (genetics) does not support this assertion."
Links 07/03/2026: Fuel Already Running Low and "Economic Crisis of the Iran War"
Links for the day
The Corporate Media Repeated the Lies Told by Jack Dorsey ("AI" Hype), Now It Does the Same for Larry Ellison
Disregard the hundreds of headlines that say mass layoffs at Oracle are due to "AI" something
The Free Software Community is Gaining Momentum as Its Importance is More Broadly Realised
As long as "trendy" technology goes in a negative direction there will be a growing portion in society looking for alternatives
Spooking or Chasing Away Women (From Computer Science)
The status quo discourages women from even trying to study Computer Science and related disciplines
"IBM Has Changed So Much in the Last Decade to the Point It's Completely Unrecognizable."
IBM is a dying, rotting company with a morbid culture
The Register MS, Sponsored by Communist Party of China (CPC)
What will happen when the bubble crashes the economy?
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, March 06, 2026
IRC logs for Friday, March 06, 2026
Gemini Links 07/03/2026: Coffee Problem, Marchintosh, Learning, and "Selectively Disabling HTTP"
Links for the day