Home / Tech News / Featured Tech News / Hundreds of MSI motherboards have a faulty Secure Boot mode

Hundreds of MSI motherboards have a faulty Secure Boot mode

If you have an MSI motherboard released in the last few years and have Secure Boot enabled, depending on the firmware version you're using, the feature might not work as you would hope. According to recent findings, almost300 MSI motherboards have a lousy Implementation of the component in select UEFI firmware versions.

Based on Dawid Potocki's investigation (via The Register), many MSI motherboards with specific firmware versions are not working as intended with Secure Boot enabled. When turning on Secure Boot, the default option for the “Image Execution Policy” setting for removable and fixed media should be “Deny Execute”. Instead, the default selection is “Always Execute”, making the Secure Boot feature useless.

To clarify what Secure Boot actually is, it's a security standard created by members of the PC industry to ensure that a device boots using only software trusted by the OEM. When the computer boots, the firmware verifies the signature of all boot software, including UEFI firmware drivers, EFI programs, and the operating system. If the signatures are genuine, the computer boots, and the firmware gives away the control of the system to the OS. With the “Always Execute” option enabled for various media types, the firmware allows the OS to boot without verifying its signature.

The issue seems to affect most motherboards released in the last six years, but only select firmware versions are affected by it. The researcher noted that most are beta BIOS releases. Still, considering they're available to the public, we'd have hoped MSI would offer a warning to its customers. That's, of course, assuming the firmware is released like this with MSI's knowledge. MSI hasn't yet commented on these findings. However, Potocki suspects the company did this intentionally “because they probably knew that Microsoft wouldn't approve of it and/or that they get less tickets about Secure Boot causing issues for their users”.

Discuss on our Facebook page HERE.

KitGuru says: Do you own an MSI motherboard affected by this issue? Have you checked if the BIOS version you're running has a faulty Secure Boot?

Become a Patron!

Check Also

Call of Duty COD

KitGuru Games: Predicting the Next Half a Decade of Call of Duty Releases

Benjamin Franklin (1706-1790) famously once said: “The three absolutes in life are death, taxes and a new Call of Duty coming out every single year”. Sure enough, the US founding father has yet to be proven wrong, with Activision and a dozen studios having ensured that come the tail-end of any given year, there will be a new COD ready to release. And so, what can we expect from the franchise later this year? What about 2027, 2028 or even 2030? By looking back at the past two decades of Call of Duty games, their trends, progression and regression, I believe I can predict the next 5 years worth of annual COD entries.