Skip to finding
important · Boot chain — GIGABYTE

Root on affected GIGABYTE systems can reopen an embedded UEFI shell and bypass Secure Boot.

Affects

Certain GIGABYTE motherboards whose BIOS includes the affected AMI Aptio UEFI BDS module.

Redundant boot entries survive vulnerable cleanup, letting the shell alter Secure Boot policy in memory and load unverified pre-OS code.

Detail and 2 sources

The prerequisite remains administrative or root control; today’s addition is the GIGABYTE-specific root cause and scope, not a new initial foothold.

Share this finding
Get it by email

The same brief, every morning. One email a day, nothing else.

Every finding here carries a source that was checked before it published. If something is wrong, write to admin@fullchain.sh — corrections are published on the day they affect.

Friday, September 11, 2026