Security
Microsoft’s Continued Commitment to Ensuring Secure Boot with Ongoing Windows Updates
Microsoft to Replace Boot-Level Security Certificates on Windows Devices
Microsoft has announced that it will automatically replace boot-level security certificates on Windows devices before they begin to expire later this year. This move is part of the regular Windows platform updates and signifies a “generational refresh” of the security standard.
Secure Boot and Its Evolution
Secure Boot, introduced in 2011 to safeguard systems from unauthorized changes during the boot process, has become a hardware requirement for Windows 11. The original 2011 Secure Boot certificates are set to expire between June 2026 and October 2026 after 15 years. New certificates issued in 2023 have already been integrated into many new Windows-based devices sold since 2024, but older PC hardware will require updates.
Importance of Certificate Refresh
Nuno Costa from Microsoft emphasized the necessity of periodically refreshing certificates and keys to uphold strong protection as cryptographic security advances. Retiring old certificates and introducing new ones is an industry standard practice to prevent outdated credentials from becoming vulnerabilities and to align platforms with modern security expectations.
Impact of Expired Certificates
While PCs will still function normally on an expired certificate, they will enter a “degraded security state” that may restrict future boot-level security updates and lead to compatibility issues with upcoming hardware or software. The recent Windows 11 KB5074109 update has begun rolling out the new Secure Boot certificates.
Automatic Installation Process
The installation of the new certificates will be automated and require no additional action for most Windows 11 users. Microsoft notes that specialized systems like servers or IoT devices may have different update procedures, and some devices may need a firmware update from third-party manufacturers. Windows 10 users must enroll in Microsoft’s Extended Security Updates to receive the new certificates.
For more information on specific update processes, users can refer to OEM support pages.
-
Facebook4 months agoEU Takes Action Against Instagram and Facebook for Violating Illegal Content Rules
-
Facebook4 months agoWarning: Facebook Creators Face Monetization Loss for Stealing and Reposting Videos
-
Facebook4 months agoFacebook Compliance: ICE-tracking Page Removed After US Government Intervention
-
Facebook4 months agoInstaDub: Meta’s AI Translation Tool for Instagram Videos
-
Facebook2 months agoFacebook’s New Look: A Blend of Instagram’s Style
-
Facebook2 months agoFacebook and Instagram to Reduce Personalized Ads for European Users
-
Facebook2 months agoReclaim Your Account: Facebook and Instagram Launch New Hub for Account Recovery
-
Apple4 months agoMeta discontinues Messenger apps for Windows and macOS

