Fetching from the wire…
Public story · 2026-07-16 · high
Enterprise compliance programs that treat Secure Boot as a hard gate have been trusting a check that's stayed open for about a decade.
Why now: It surfaced the same week as a record-size Patch Tuesday and an actively exploited Windows 0-day, per Ars Technica.
Microsoft never revoked a set of old bootloader shims, leaving Secure Boot bypassable for roughly its entire existence, per Ars Technica.
Secure Boot is the root of trust that measured boot and disk-encryption attestation chains depend on. Every enterprise compliance assumption built on that chain inherits the flaw.
Not some rare exploit chain. Ars Technica describes them as old, forgotten bootloaders Microsoft never pulled from the trusted list, which is what makes the bypass trivial, not theoretical.
The report didn't land on its own. It arrived the same week as a record-size Patch Tuesday and an actively exploited Windows 0-day, per Ars Technica.
Patching the specific shims Ars Technica names won't close this out. Microsoft's revocation process is what let known-bad bootloaders stay trusted for years, and that's the same process that has to catch the next batch.
Any compliance program that keys attestation off "Secure Boot is on" needs to check what's actually in the trusted bootloader list. Checking whether the setting is flipped isn't enough.
Each link below shares sources, entities, or timing with this story.
Instead of reverse-engineering, researchers just asked Microsoft 365 Copilot why auto-execution was impossible, and each refusal leaked architectural detail until it handed over ?autorun=1. Combined with the known ?q= parameter, that fired an attacker's prompt the instant a vi...
Ars Technica reports it's one of two Linux flaws this week granting root to untrusted users. Guest escape breaks the isolation assumption underneath every multi-tenant inference host and every sandboxed agent runtime. If you run untrusted agent-generated code in VM isolation,...
microsoft/skill-recorder (2,233 stars since July 29, pushing daily) is an Electron app that records clicks, window switches and optional narration, then uses the GitHub Copilot CLI to reconstruct the session as an intent plus ordered steps. The design choice that matters: gene...
On Latent Space July 28, OpenAI core product engineering lead Akshay Nathan said Codex and ChatGPT Work combined reached 10 million users within two weeks of the July 9 launch, with monthly actives up more than 10x since January 2026. The number that should reframe your produc...
The agent skills supply chain is under coordinated attack. Snyk's ToxicSkills audit found 36% of ClawHub's 3,984 skills contain prompt injection payloads, 13.4% have critical malware, and submission rates exploded 10x to 500+/day. This week alone: CVE-2026-2256 (CVSS 9.1) is a...
At Build 2026, Microsoft introduced Autopilots, always-on agents that hold their own identity and act on your behalf, with Scout as the first, shipping for Windows 11+ and macOS 12+. Hosted Agents in Foundry hit GA by end of June with hypervisor-isolated environments, per-agen...
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.