XDA Developers on MSN
Microsoft's Secure Boot certificates expire in June 2026, but older PCs may never get the fix
Make sure you've updated before the deadline.
The Key Exchange Key (KEK) acts as an authority that allows Microsoft to update the other databases, like the DB and DBX that ...
Microsoft, and its original equipment manufacturer (OEM) partners, are planning to update Secure Boot on Windows Unified Extensible Firmware Interface (UEFI) PCs, starting this year, per a Tuesday ...
Don't let your PC languish ...
Microsoft confirms systems without updated Secure Boot certificates will boot normally but lose some security protections.
Microsoft has started automatically replacing expiring Secure Boot certificates on eligible Windows 11 24H2 and 25H2 systems. Secure Boot is a security feature that blocks malicious software (like ...
In June 2025, Microsoft announced that, in June 2026, it would begin deprecating Secure Boot certificates of Windows systems from 2011, which were superseded by their 2023 counterparts. As the clock ...
TL;DR: Secure Boot certificates in Windows 10 and 11 will expire by June 2026, risking system security and compatibility. Microsoft is issuing new certificates through updates and OEM firmware ...
Event ID 1798 occurs when an attempt is made to add the Microsoft Windows Production PCA 2011 certificate; this is an old and less secure certificate compared to UEFI CA 2023. In this post, we will ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results