Introduced in 2012, Secure Boot has become a foundational rock in modern computing and is used by millions of UEFI-enabled computers worldwide due to its integration in their BIOS.

In this presentation, we will discuss:

• past and current flaws in valid bootloaders, including some that misuse built-in features to bypass Secure Boot inadvertently

• how malicious executables can hide from TPM measurements used by BitLocker and remote attestation mechanisms.

• how these new exploits work and discuss ways to remediate these vulnerabilities and preserve the integrity of the Secure Boot process.

