Microsoft Secure Boot certificate expiration guidance for Windows devices
Advisory/Mitigation
Summary
Hide ▲
Show ▼
Microsoft warned that Secure Boot certificates used by most Windows devices expire starting in June 2026, creating a risk that some personal and business systems may not boot securely. The company said affected devices could face boot disruption if the certificates are not updated in time. Microsoft urged customers to review the guidance and update certificates in advance to avoid that disruption.
Related Happenings
Microsoft RDP file security guidance
Advisory/Mitigation
H score28
First: 14.07.2026 21:49
Last: 14.07.2026 21:49
Sources 1
About this happening:
Microsoft issued RDP mitigation guidance that restricts which .rdp files users can open and recommends migrating trusted publishers to SHA-256 thumbprints, reducing ph...
Microsoft RDP file security guidance
Advisory/MitigationAbout this happening: Microsoft issued RDP mitigation guidance that restricts which .rdp files users can open and recommends migrating trusted publishers to SHA-256 thumbprints, reducing ph...
Active Directory Federation Services actively exploited elevation of privilege privilege-escalation flaw (CVE-2026-56155)
Vulnerability
H score29
First: 14.07.2026 21:01
Last: 14.07.2026 21:01
Sources 1
About this happening:
Microsoft patched CVE-2026-56155 in Active Directory Federation Services (AD FS) after confirming active exploitation of an elevation-of-privilege flaw that could let...
Active Directory Federation Services actively exploited elevation of privilege privilege-escalation flaw (CVE-2026-56155)
VulnerabilityAbout this happening: Microsoft patched CVE-2026-56155 in Active Directory Federation Services (AD FS) after confirming active exploitation of an elevation-of-privilege flaw that could let...
Microsoft Malware Protection Engine race-condition elevation-of-privilege remote code execution flaw (CVE-2026-50656)
Vulnerability
H score32
First: 17.06.2026 11:32
Last: 17.06.2026 11:32
Sources 1
About this happening:
Microsoft has released a security update for CVE-2026-50656 after public disclosure of RoguePlanet, a privilege-escalation flaw in the Microsoft Malware Protecti...
Microsoft Malware Protection Engine race-condition elevation-of-privilege remote code execution flaw (CVE-2026-50656)
VulnerabilityAbout this happening: Microsoft has released a security update for CVE-2026-50656 after public disclosure of RoguePlanet, a privilege-escalation flaw in the Microsoft Malware Protecti...
Microsoft SharePoint remote code execution (CVE-2026-45659)
Vulnerability
H score17
First: 26.05.2026 14:49
Last: 26.05.2026 14:49
Sources 1
About this happening:
Microsoft SharePoint CVE-2026-45659 is a remote code execution vulnerability that lets an authenticated attacker with Site Member permissions run code over the...
Microsoft SharePoint remote code execution (CVE-2026-45659)
VulnerabilityAbout this happening: Microsoft SharePoint CVE-2026-45659 is a remote code execution vulnerability that lets an authenticated attacker with Site Member permissions run code over the...
Microsoft adds Cloud-Initiated Driver Recovery for Windows Update driver rollbacks
Security Tool/Service
H score10
First: 15.05.2026 15:29
Last: 15.05.2026 15:29
Sources 1
About this happening:
Microsoft is adding Cloud-Initiated Driver Recovery to Windows Update, giving it a remote rollback control for problematic Windows drivers. The capability reduces how...
Microsoft adds Cloud-Initiated Driver Recovery for Windows Update driver rollbacks
Security Tool/ServiceAbout this happening: Microsoft is adding Cloud-Initiated Driver Recovery to Windows Update, giving it a remote rollback control for problematic Windows drivers. The capability reduces how...
Timeline
-
10.02.2026 21:06 2 articles · 5mo ago
Microsoft continues Secure Boot certificate rollout in Windows 10 KB5075912
Mitigation Patch UpdateMicrosoft released Windows 10 KB5075912 and continues rolling out replacement Secure Boot certificates to targeted Windows devices through monthly Windows updates, expanding delivery only after devices show sufficient successful update signals ahead of the June 2026 expiration.
Show sources
- Microsoft releases Windows 10 KB5075912 extended security update — www.bleepingcomputer.com — 10.02.2026 21:06
- Microsoft Patches 138 Vulnerabilities, Including DNS and Netlogon RCE Flaws — thehackernews.com — 13.05.2026 13:36
-
14.01.2026 11:38 2 articles · 6mo ago
Microsoft Secure Boot certificate expiration guidance for Windows devices
Initial DisclosureMicrosoft issued advance guidance for expiring Secure Boot certificates on Windows devices ahead of the June 2026 deadline. The initial phase is a proactive mitigation effort aimed at preventing secure-boot disruption before certificate expiry takes effect.
Show sources
- Microsoft Fixes 114 Windows Flaws in January 2026 Patch, One Actively Exploited — thehackernews.com — 14.01.2026 11:38
- Microsoft Fixes 114 Windows Flaws in January 2026 Patch, One Actively Exploited — thehackernews.com — 14.01.2026 11:38