Bonum Certa Men Certa

System76 Gives 'Secure' Boot the Boot

Reprinted with permission from Ryan Farmer.

System76 Ditches UEFI Firmware Trash, Ships Coreboot Firmware on Linux Laptops.



I noticed today while looking around, that System76 has gotten rid of the UEFI trash on most of their products.



UEF is designed heavily around Windows and is full of bugs (here’s the list of them on my Lenovo ThinkBook 15 ITL Gen2) and promotes Microsoft’s lock-in, Security Theater Boot. I’ve had nothing but problems out of UEFI and even had to take legal action against Lenovo for abusing the customers and violating American laws with it.



Coreboot is the firmware that people deserve to have.



"Coreboot is the firmware that people deserve to have."It’s actually designed to “Just boot the computer and get the Hell out of there.”, which is what Linus Torvalds said he missed about “PC BIOS”.



It’s up to the user, really, what they want to run and so I congratulate System76 for taking strong and decisive action on behalf of their customers and recommend that people who need an x86 PC with Linux take their business to System76 as I will do next time I need a laptop.



Good behavior deserves to be rewarded!



UEFI is so bad that it should never have been released.



Lenovo should be ashamed of shipping this garbage on their computers.



Many times it doesn’t even work right on Windows.



They’re constantly patching it, and sometimes when you apply the patch it screws up Windows and your bootloader isn’t recognized, or “Bitlocker” won’t let you in unless you know your recovery key.



It’s even worse than the worst “Legacy BIOS” implementation I had ever encountered on dozens of PCs I owned over the years that it was shipped.



"You can pretty much expect ACPI issues and potentially dead hardware with UEFI, just from the operating system using its documented interfaces."The very worst problem I ever encountered on “Legacy BIOS” was an ACPI problem, but at least the computer worked and I raised Hell with the vendor and it got fixed.



You can pretty much expect ACPI issues and potentially dead hardware with UEFI, just from the operating system using its documented interfaces.



A system firmware that is well-designed should never risk being “bricked” because you loaded an OS.



UEFI implementations were poorly designed and went out without any testing.



Lots of the worst BIOS code (ACPI) was lifted straight out of Legacy BIOS, and then they went and created new disasters.



More than 10 years later, UEFI has only barely gotten better, in general.



In some ways, worse. (Depending on hardware vendor.)



Malware “in the boot path” is not an actual problem Linux users are having.



Even on the Windows side, Microsoft mostly threw “Secure Boot” in because people were using programs running before Windows started to trick the Product Activator. But those aren’t “malware”. They’re illegal, sure. (At least in the US.)



Also, why would you even run Windows for free? Eww.



But they are not threatening the user.



"Now that we have affordable alternatives to UEFI, even on the PC, don’t buy UEFI!"The only sane thing to do about UEFI “Secure Boot” is turn it off and just use the computer, but that’s in no way guaranteed to work forever. Microsoft could change the Windows license program and remove the part about the user being allowed to turn it off, and they probably will at some point.



After Ubuntu screwed me on the “Boothole” patch by incompetently updating the “dbx” ahead of other Linux vendors, rendering me unable to boot into Fedora, I reset Secure Boot on the Yoga and then turned it off.



I’ve never used “Secure Boot On” on the ThinkBook since removing Windows.



It doesn’t provide any actual security, it’s just one more thing in the way of running your PC the way you want.



And your OS vendor shouldn’t have to buy a “hall pass” from Microsoft, which is basically the way “Secure Boot” works on Linux now. The way Lenovo ships their laptops, the only way to control Secure Boot is turn it on or off. That’s pretty much it. If they let you have any control over it, it defies being documented (on purpose).



Even Theo de Raadt, the person behind OpenBSD rolls his eyes at “Secure Boot”.



It’s better to just buy a firmware that doesn’t do this to you as it certainly doesn’t solve any actual problem Linux users have.



Now that we have affordable alternatives to UEFI, even on the PC, don’t buy UEFI!



Not only is UEFI system firmware code objectively horrific now, unless we want to live in a future where Microsoft controls the PC, we should support computer makers that provide us with alternatives where Free Software will continue to be allowed. Otherwise, we will eventually run out of time and Microsoft will disallow operating system choice from the moment you press the power button.



EFI is this other Intel brain-damage (the first one being ACPI). It’s totally different from a normal BIOS, and was brought on by ia64, which never had a BIOS, of course.



[…]



Sadly, EFI people (a) think that their stinking mess is better than a BIOS and (b) are historically ia64-only, so they didn’t do that, but went the “we’ll just duplicate everything using our inferior EFI interfaces” way.

Linus Torvalds (before UEFI made it to PCs in an even worse state than it was in on ia64 and Macs)


Recent Techrights' Posts

Microsofters' SLAPP Censorship - Part 11 Out of 200: Cannot Censor His Spouse, Accusations Are Repeated Today
He already has a history of threatening to sue gay people in America; he cannot take criticism too well
"Alternative to Microsoft Office" Must Use Free/Open Standards/Formats for Real Sovereignty
It would make sense for the EU to invest in its own workers and its own software projects, more so now that there are hostile countries both to the east and to the west
When Everybody Has a Right/Access to An Attorney/Lawyer (But Some Get Funding From Malicious American Corporations to Spend a Million Dollars on Many Lawyers and Several Barristers)
And send about 75 KG of legal papers to the residence of the "opponent"
 
Reporting New and Suppressed Information is What Journalism is All About
In the domain of Free software, there are very few sites out there that offer exclusive coverage on community affairs and there are many gagging/censorship attempts
The Limits of Speech and the Rationale of Limitations
it seems to be part of an international trend
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, March 13, 2026
IRC logs for Friday, March 13, 2026
Gemini Links 14/03/2026: Goodness, AD534 Multiplier Module, and Extroverts Online
Links for the day
Atlassian Corp: We're Doing Layoffs Because of "Hey Hi"; Wall Street: Atlassian Corp is Just a Failing Business
Don't ask "the media"
Price of Storage, Price of Energy... What Next?
EPO workers are going on strike because their salaries don't keep up with price increases and tech companies without connections in "the channel" face long delays, low availability, and high prices (no "bulk" purchases), which further solidifies monopolies.
Don't Forget Red Hat's RTO (Return-to-office) Layoffs
How many people still remember that Red Hat did the same thing?
Reminder: Microsoft silent Layoffs by RTO (Commute Time and Lack of Comfort/Work Satisfaction) Already in Effect This Year
It's difficult to measure how many employees have already "left on their own" due to the RTO policy
Founder of IBM Ventures Has Just Quit IBM
Some people leave IBM and many people 'leave' IBM
Signs of Impeding Mass Layoffs - Not Just Quiet Layoffs - at Microsoft
Beneath the surface there are waves of layoffs and even entire teams are let go
Career Science and Academia as Corporate Propaganda 'on Tap'
article about surveillance
Veteran GNU/Linux Journalist Jack Wallen Tries Geminispace and Likes It
It'll turn 7 some time soon
Scheduled Maintenance Tonight
There will be similar work early next week
IBM Has No Clue How to Integrate Companies Like Red Hat
IBM is failing to respect this company's culture
Fake Articles From Sites With "Linux" in Their Name/Domain Name
we can at least hope that linuxteck.com made a decision to quit slop
Links 13/03/2026: New US Weapons for Taiwan, Pakistan Air Strikes Hit Kabul
Links for the day
Gemini Links 13/03/2026: Exhaustion and Smartphone Addiction
Links for the day
Friday the 13th & Debian Developers afraid to nominate in DPL elections
Reprinted with permission from Daniel Pocock
Links 13/03/2026: Chatbot "Pentagon Contract" (Bailout) and Secret Service Ditches Slop Pusher
Links for the day
European Qualifying Examination (EQE) Being Reduced to Pieces of Papers One Can Buy, Patent System Rapidly Losing Its Legitimacy
Welcome to the "new Europe"
Priorities in 2026
2026 is an interesting year
Willis Towers Watson (WTW) Producing More Propaganda for EPO "Cocaine Communication Managers"
The Local Staff Committee The Hague (LSCTH) has this new paper about Willis Towers Watson (WTW) and its annual EPO-sponsored propaganda, pretending all is well when things are clearly dire
Head of Microsoft Office and Microsoft 360 is Leaving Microsoft Amid Problems and Mass Layoffs
Microsoft is like a "legacy" company
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, March 12, 2026
IRC logs for Thursday, March 12, 2026
Gemini Links 13/03/2026: "Someone to Take Over Antenna" and Random Seed/RNG
Links for the day
By Expanding to Advocacy of Ponzi Schemes and Bill Epsteingate (Sex Trafficking), Linux Foundation Revenue Grew to $220,730,594, But Salary of Linus Torvalds Not Even in Top 10 Anymore!
true!
In the Name of Transparency, Today We Show Our Defence and Counterclaim
already uploaded by the other side
IBM Cannot Even Do Payroll, Now a "Legitimate Target" of Iran
Missiles or not, it seems like IBM systems will be targeted more by cybercriminals
Links 12/03/2026: Heating Bills to Soar, "Banks in Gulf Evacuate Their Offices"
Links for the day
Gemini Links 12/03/2026: On Phone Anxiety and Bjorn "Looking for Someone to Take Over Antenna"
Links for the day
Cultification: best candidates avoiding Debian leader elections
Reprinted with permission from Daniel Pocock
Richard Stallman (RMS) et al Cited in 'Nature' (Journal/Site) Today, "CODE beyond FAIR"
Under Open Access
The Register MS, on Verge of Collapse, Keeps Promoting a Ponzi Scheme for China
Publishers that participate in this simply don't care about their readers
Overview of False Narratives and Lies Used to Lower Salaries at the European Patent Office (EPO), Abandoning Patent Quality and the EPC
Many of the latter slides are the same as Munich's
Links 12/03/2026: Atlassian Layoffs, GAFAN Covering up Slop-Induced Outages, "Age-verification in Operating Systems and the Internet"
Links for the day
The EPO's President, Who Covers Up Cocaine Use, is Trying to Suppress Communication Between EPO Staff Under the Guise of 'Privacy' (and in Defiance of a Court Ruling)
Why does Europe's second-largest institution: 1) curtail communication among staff (including union) and 2) go out of its way to avoid obeying a court order from ILOAT in Geneva?
Exactly One Week Before Next EPO Strike, Media Intentionally Not Mentioning EPO Strikes
One form of propaganda technique/s involves the systematic suppression of certain topics, or of particular "narratives"
Microsofters' SLAPP Censorship - Part 10 Out of 200: Showing Public Tweets is Not a Privacy Violation, But This Isn't About Justice, It's About Censorship
It's time to put a stop to this abuse of process (which is what the Judge deemed it to be last year)
Suicide of disgruntled employee? Bus fire at Kerzers / Chiètres, Switzerland, at least six dead
Reprinted with permission from Daniel Pocock
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, March 11, 2026
IRC logs for Wednesday, March 11, 2026
Gemini Links 12/03/2026: "on Urbit" and the True Cost (or Criticism) of "Social Control Media"
Links for the day