2053 shaares
This project provides a Secure Boot audit toolkit for Linux.
It audits whether your UEFI forbidden-signature database is up to date with Microsoft’s published Secure Boot revocations. It can also audit a mounted Linux EFI System Partition (ESP) for binaries that match entries revoked by Microsoft’s Secure Boot (dbx)