I am on a dual boot Debian 12 / Win11 and I get a firmware upgrade in debian with this text:

_Some of the platform secrets may be invalidated when updating this firmware. Please ensure you have the volume recovery key before continuing.

This updates the list of forbidden signatures (the “dbx”) to the latest release from Microsoft.

Some insecure bootloaders were added, due to security vulnerabilities that allowed an attacker to bypass UEFI Secure Boot. The additional entries were from: • Baramanudi Management Suite • EAZ EasyFix • Finland Matriculation Examination Board • NTC IT ROSA Linux • PC-Doctor • Spyrus WTGCreator • WhiteCanyon blancco • Some ancient shim releases for OpenSUSE, Oracle and Red Hat_

My questions are:

  • Does dual boot have extra riscs?
  • The volume recovery key: is that the luks encryption key?
  • Any tips how to get it?

Any help much appreciated.

  • Joël de Bruijn@lemmy.mlOP
    link
    fedilink
    arrow-up
    1
    ·
    7 days ago

    Thanks, I keep my Bitlocker key in Bitwarden, need it often after Windows uodates …

    The luks key … wasnt so clever of me.

    I am going to backup extra and see how it goes.