Secure Boot is completely broken on 200+ models from 5 big device makers

https://arstechnica.com/security/2024/07/secure-boot-is-completely-compromised-on-200-models-from-5-big-device-makers/

Reply to this note

Please Login to reply.

Discussion

What is the implication for hardware wallets?

The HW is not affected by compromised systems, the strength of the HW is that the transaction is signed offline and through the screen of the device you see the data of the signed transaction.

That is why it is very important to verify the data indicating the amount and to the address sent.

An infected system cannot do anything with an already signed transaction other than not broadcasting or displaying incorrect data in the software used.

Thanks for the comprehensive explaination!

as broken as CAs, but at least you can wipe the keys in uefi and load your own keys and sign your own kernel with it - actually the real secure boot.