Secure Boot-neutering PKfail debacle is more prevalent than anyone knew
A Secure Boot supply chain failure has been found in a wider range of devices than earlier identified, including ATMs, voting machines, and point-of-sale terminals. This is due to the use of non-production test platform keys in hundreds of device models across brands like Acer, Dell, and HP. The test keys compromise the entire security chain. Researchers at Binarly have now identified about 972 models using test keys, including 490 using a key compromised on GitHub.
Source: arstechnica.com
- Read more