secure-boot
There are 120 repositories under secure-boot topic.
ventoy/Ventoy
A new bootable USB solution.
pbatard/rufus
The Reliable USB Formatting Utility
Foxboron/sbctl
:computer: :lock: :key: Secure Boot key manager
GrapheneOS/Auditor
Hardware-based attestation / intrusion detection app for Android devices. It provides both local verification with another Android device via QR codes and optional scheduled server-based verification with support for alert emails. It uses hardware-backed keys and attestation support as the foundation and chains trust to the app for software checks.
Wack0/CVE-2022-21894
baton drop (CVE-2022-21894): Secure Boot Security Feature Bypass Vulnerability
joembedded/JesFs
Jo's Embedded Serial File System (for Standard Serial NOR-Flash)
andreyv/sbupdate
Generate and sign kernel images for UEFI Secure Boot on Arch Linux
Foxboron/go-uefi
Linux UEFI library written in pure Go.
maximbaz/arch-secure-boot
UEFI Secure Boot for Arch Linux + btrfs snapshot recovery
GrapheneOS/AttestationServer
attestation.app remote attestation server. Server code for use with the Auditor app: https://github.com/GrapheneOS/Auditor. It provides two services: submission of attestation data samples and a remote attestation implementation with email alerts to go along with the local implementation based on QR code scanning in the app.
sandrokeil/yubikey-full-disk-encryption-secure-boot-uefi
Tutorial to create full disk encryption with YubiKey, encrypted boot partition and secure boot with UEFI
frederic/exynos-usbdl
Unsigned code loader for Exynos BootROM
sabi-31/Modern_Arch_Linux_Install
A comprehensive guide to installing Arch Linux with all of the modern features.
pbatard/Mosby
Mosby – More Secure Secure Boot
jonasblixt/punchboot
Punchboot
frederic/amlogic-usbdl
Unsigned code loader for Amlogic BootROM
hex-five/multizone-sdk
MultiZone® Security TEE is the quick and safe way to add security and separation to any RISC-V processors. The RISC-V standard ISA doesn't define TrustZone-like primitives to provide hardware separation. To shield critical functionality from untrusted third-party components, MultiZone provides hardware-enforced, software-defined separation of multi
jiazhang0/meta-secure-core
OpenEmbedded layer for the use cases on secure boot, integrity and encryption
cutecatsandvirtualmachines/Sputnik
The sequel to Voyager
mq1n/Win11SysCheck
Windows 11 compability check with user friendly output
xairy/unlockdown
Disabling kernel lockdown on Ubuntu without physical access
frederic/qemu-exynos-bootrom
Emulating Exynos 4210 BootROM in QEMU
Snawoot/linux-secureboot-kit
Tool for complete hardening of Linux boot chain with UEFI Secure Boot
cjee21/Check-UEFISecureBootVariables
PowerShell scripts to check the UEFI KEK, DB and DBX Secure Boot variables.
paulveillard/cybersecurity-architecture
An ongoing & curated collection of awesome software best practices and techniques, libraries and frameworks, E-books and videos, websites, blog posts, links to github Repositories, technical guidelines and important resources about Software & Systems Architecture in Cybersecurity
sbaresearch/mbn-mcfg-tools
Tools for parsing/extracting/packing Qualcomm mbn MCFG (Modem Configuration) files
wimbrts/USB_FORMAT
USB Format Tool - Make Bootable USB Drive with MBR and 2 Partitions
tpowa/Archboot
Archboot is a most advanced, modular Arch Linux boot/install image creation utility to generate bootable media for CD/USB/PXE, designed for installation or rescue operation.
Wack0/SecureBootPolicyTools
Take back control of Windows Code Integrity, no exploits or patching required! Requires that you control your own Platform Key (PK).
jiazhang0/SELoader
Secure EFI Loader designed to authenticate the non-PE files
schierlm/usb-modboot
Boot multiple systems from a single GRUB2-powered USB drive (just drop ISO or other modules to integrate into menu)
ShellCode33/ArchLinux-Hardened
ArchLinux setup which focuses on desktop security
grawity/tpm_futurepcr
Calculate future (next boot) TPM PCRs after a kernel upgrade
clsty/arCNiso
✨**用户友好型 archiso✨ <中文|xfce4|安全启动 secure boot>
GrapheneOS-Archive/AttestationSamples
A small subset of the submitted sample data from https://github.com/GrapheneOS/Auditor. It has a sample attestation certificate chain per device model (ro.product.model) along with a subset of the system properties from the sample as supplementary information.
STMicroelectronics/stm32-mw-mcuboot
MCUboot is an OS- and HW-independent secure bootloader for 32-bit MCUs aiming at defining a common infrastructure for the bootloader and the system flash layout on microcontroller systems, and at providing a secure bootloader that enables simple software upgrades.