-
@ Matthew Garrett
2025-02-26 20:27:24This may seem odd given my position on secure boot, but: I think Boot Guard is absolutely pointless in almost all real-world scenarios, and in the scenarios where it matters I think TPM-backed measurement gets almost all the benefit without restricting what users can do with their firmware. AMD's Platform Secure Boot is even more pointless, since it can be bypassed by simply replacing the CPU with an unfused one.