Additional guidance for devices using Secure Boot to address CVE-2023-24932


  • Staff

 Microsoft Support:

UPDATE 7/11:
Second Deployment This phase starts with updates released on July 11, 2023, which adds additionally support mitigating the issue.

Security updates released May 9, 2023 and later contain security hardening changes to protect against vulnerabilities tracked by CVE-2023-24932 that can bypass the Secure Boot security feature using the BlackLotus UEFI bootkit. These hardening changes are available but not enabled by default in these updates. The security hardening for CVE-2023-24932 will be done in phases, as steps must be taken to prevent issues on your device when the revocations are applied/enabled, which is required to address CVE-2023-24932.

For information on how to apply the revocations and what is required before you apply the revocations, see KB5025885: How to manage the Windows Boot Manager revocations for Secure Boot changes associated with CVE-2023-24932. We recommend that all Windows users review this documentation carefully, including both IT administrators and consumers.



 Read more:

 

Attachments

  • Windows_Security.png
    Windows_Security.png
    6 KB · Views: 1
Last edited:
For those who might still be following this, I tested out some steps for upgrading Windows PE after revocations are put in place.

Before you read any further, I'm just going to point out that this is for the real geeks out there and for completeness in this thread. Most people may not care about this stuff :-)

For those that don't care, I will just appeal to you to test any Win PE based media once you get to the point where you have applied revocations. You want to make sure that any such media works properly (that it can be booted successfully) after the revocations are applied to your system.

The procedure below has two options:

1) How to Update the Windows PE Add-on to Address the BlackLotus UEFI Bootkit Mitigation

This option applies if you installed Win PE onto your system. After you update Windows PE, any programs that create Windows PE based boot media will have all of the updates, assuming that they are pulling the Windows PE files from your installed copy of Windows PE.

In my testing, when I tried to create a Macrium Reflect boot disk, it did NOT pull files from my installed copy of Windows PE. Instead, it downloaded Windows PE from Microsoft and then built the media from that download. That is where Option 2 comes into play:

2) Apply Updates to Existing Windows PE Media (Macrium Reflect, Acronis software, etc.)

This will update media that has not already been patched that was created using Windows PE.

Enough intro. Here is the procedure that I worked out that is working for me:

--------------------------


This document contains 2 procedures:

OPTION 1: How to Update the Windows PE Add-on to Address the BlackLotus UEFI Bootkit Mitigation
OPTION 2: Apply Updates to Existing Windows PE Media


OPTION 1: How to Update the Windows PE Add-on to Address the BlackLotus UEFI Bootkit Mitigation

IMPORTANT
: Before you perform this procedure, you should make sure that you first have the May 9, 2023 Path Tuesday updates (or newer) applied to Windows.

Since the goal of this procedure is to update the Windows PE add-on, it is assumed that you already have Windows PE installed. If not, please install the Windows ADK and the Windows PE add-on. When installing the ADK, you will have the option to install a number of components. The only item needed is the Deployment tools option.

After installing the ADK, install the Windows PE add-on.

On your Windows drive (assumed to be C:), create folders for this project using these commands:

md c:\Project md c:\Project\Mount md c:\Project\LCU md c:\Project\SSU md c:\Project\temp

IMPORTANT: The DISM command will often fail when dismounting an image if antivirus software interferes with it. I strongly suggest doing one of the following:

1) Disable real time antivirus scanning until you have finished this procedure.
2) Create an antivirus exception for c:\Project and all files and folders contained therein until you have finished this procedure.

From the Microsoft Update Catalog, download the Latest Cumulative Update. Here is a sample search term to find the LCU for Windows 11 22H2 as of May 2023. Include the quotes as shown:

"Windows 11" version 22H2 2023-05

Make sure to download the x64 version of the update and not the arm64-based update.

After downloading, right-click the update file, select properties, check the Unblock box and then click on OK.

Place that file in the c:\Project\LCU folder.

Start the Deployment and Imaging Tools Environment as an administrator. You can find this by going to Start > All apps > Windows Kits.

Run all of the following commands from that command prompt.

You will get a command prompt with a very long path shown. Run the command below (include the quotes):

cd "..\Windows Preinstallation Environment\amd64"

Mount Windows PE with this command:

DISM /Mount-Image /ImageFile:"en-us\winpe.wim" /index:1 /MountDir:"C:\Project\Mount"

The Latest Cumulative Update (LCU) may possibly also contain an SSU (Servicing Stack Update). Run the following to extract the SSU if one is present. If an SSU is not present, no worries, this won't harm anything:

expand "C:\Project\LCU\*.MSU" /f:"SSU*.cab" "C:\Project\SSU"

Check the SSU folder to see if a file is present. If a file is present, run the following command. If no file is present, skip that command. This command will apply the SSU:

DISM /Add-Package /Image:"C:\Project\Mount" /PackagePath="C:\Project\SSU"

Apply The LCU with this command:

DISM /Add-Package /Image:"C:\Project\Mount" /PackagePath="C:\Project\LCU"

Lock the updates:

DISM /Cleanup-Image /Image:"C:\Project\Mount" /StartComponentCleanup /Resetbase /ScratchDir:C:\Project\temp

Copy boot files back to the Win PE add-on installation with these two commands:

Xcopy "C:\Project\Mount\Windows\Boot\EFI\bootmgr.efi" "Media\bootmgr.efi" /Y Xcopy "C:\Project\Mount\Windows\Boot\EFI\bootmgfw.efi" "Media\EFI\Boot\bootx64.efi" /Y

Unmount the Win PE image and commit the changes:

DISM /Unmount-Image /MountDir:"C:\Project\Mount" /Commit

This concludes the process. Any images or media that you now create that uses the Windows PE add-on will now have updated Windows PE files.


Option 2: Apply Updates to Existing Windows PE Media

IMPORTANT
: Before you perform this procedure, you should make sure that you first have the May 9, 2023 Path Tuesday updates (or newer) applied to Windows.

IMPORTANT: The copy of Windows PE that you are updating should be of the same version as the updates being applied. My suggestion is that you regenerate the Windows PE based media using your current version of Windows before you proceed.

This procedure requires tools from the Windows ADK. If you do not already have the ADK installed, please install it now. When installing the ADK, you will have the option to install a number of components. The only item needed is the Deployment tools option.

On your Windows drive (assumed to be C:), create folders for this project using these commands:

md c:\Project md c:\Project\Mount md c:\Project\LCU md c:\Project\SSU md c:\Project\temp md c:\Project\WinPE md c:\Project\WinPE_NEW

Start by copying boot.wim from your media to C:\Project\WinPE. This file should be in a \Sources folder.

IMPORTANT: The DISM command will often fail when dismounting an image if antivirus software interferes with it. I strongly suggest doing one of the following:

1) Disable real time antivirus scanning until you have finished this procedure.
2) Create an antivirus exception for c:\Project and all files and folders contained therein until you have finished this procedure.

From the Microsoft Update Catalog, download the Latest Cumulative Update. Here is a sample search term to find the LCU for Windows 11 22H2 as of May 2023. Include the quotes as shown:

"Windows 11" version 22H2 2023-05

Make sure to download the x64 version of the update and not the arm64-based update.

After downloading, right-click the update file, select properties, check the Unblock box and then click on OK.

Place that file in the c:\Project\LCU folder.

Start the Deployment and Imaging Tools Environment as an administrator. You can find this by going to Start > All apps > Windows Kits. Run all of the following commands from that command prompt.

You will get a command prompt with a very long path shown. Run the command below. This will shorten that annoyingly long path and make it easier to see what you are doing:

CD\

Mount Windows PE:

DISM /Mount-Image /ImageFile:"c:\Project\WinPE\boot.wim" /index:1 /MountDir:"C:\Project\Mount"

The Latest Cumulative Update (LCU) may possibly also contain an SSU (Servicing Stack Update). Run the following to extract the SSU if one is present. If an SSU is not present, no worries, this won't harm anything:

expand "C:\Project\LCU\*.MSU" /f:"SSU*.cab" "C:\Project\SSU"

Check the SSU folder to see if a file is present. If a file is present, run the following command to apply the SSU, if not, skip that command:

DISM /Add-Package /Image:"C:\Project\Mount" /PackagePath="C:\Project\SSU"

Apply The LCU:

DISM /Add-Package /Image:"C:\Project\Mount" /PackagePath="C:\Project\LCU" DISM /Cleanup-Image /Image:"C:\Project\Mount" /StartComponentCleanup DISM /Unmount-Image /MountDir:"C:\Project\Mount" /Commit DISM /Export-Image /SourceImageFile:"C:\Project\WinPE\boot.wim" /SourceIndex:1 /DestinationImageFile:"C:\Project\WinPE_New\boot.wim"

Copy the boot.wim from c:\Project\WinPE_New to your media, replacing the boot.wim in the \Sources folder. If you like, you can first make a backup of the original boot.wim file by copying it to another location just in case there is a problem with the newly updated file.

This concludes the process of updating Windows PE on existing media.
 

My Computers

System One System Two

  • OS
    Win11 Pro 23H2
    Computer type
    PC/Desktop
    Manufacturer/Model
    Home Built
    CPU
    Intel i7-11700K
    Motherboard
    ASUS Prime Z590-A
    Memory
    128GB Crucial Ballistix 3200MHz DRAM
    Graphics Card(s)
    No GPU - CPU graphics only (for now)
    Sound Card
    Realtek (on motherboard)
    Monitor(s) Displays
    HP Envy 32
    Screen Resolution
    2560 x 1440
    Hard Drives
    1 x 1TB NVMe Gen 4 x 4 SSD
    1 x 2TB NVMe Gen 3 x 4 SSD
    2 x 512GB 2.5" SSDs
    2 x 8TB HD
    PSU
    Corsair HX850i
    Case
    Corsair iCue 5000X RGB
    Cooling
    Noctua NH-D15 chromax.black cooler + 10 case fans
    Keyboard
    CODE backlit mechanical keyboard
    Mouse
    Logitech MX Master 3
    Internet Speed
    1Gb Up / 1 Gb Down
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    Additional options installed:
    WiFi 6E PCIe adapter
    ASUS ThunderboltEX 4 PCIe adapter
  • Operating System
    Win11 Pro 23H2
    Computer type
    Laptop
    Manufacturer/Model
    Lenovo ThinkBook 13x Gen 2
    CPU
    Intel i7-1255U
    Memory
    16 GB
    Graphics card(s)
    Intel Iris Xe Graphics
    Sound Card
    Realtek® ALC3306-CG codec
    Monitor(s) Displays
    13.3-inch IPS Display
    Screen Resolution
    WQXGA (2560 x 1600)
    Hard Drives
    2 TB 4 x 4 NVMe SSD
    PSU
    USB-C / Thunderbolt 4 Power / Charging
    Mouse
    Buttonless Glass Precision Touchpad
    Keyboard
    Backlit, spill resistant keyboard
    Internet Speed
    1Gb Up / 1Gb Down
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    WiFi 6e / Bluetooth 5.1 / Facial Recognition / Fingerprint Sensor / ToF (Time of Flight) Human Presence Sensor
UPDATE:

Second Deployment This phase starts with updates released on July 11, 2023, which adds additionally support mitigating the issue.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro for Workstations
    Computer type
    PC/Desktop
    Manufacturer/Model
    Custom self build
    CPU
    Intel i7-8700K 5 GHz
    Motherboard
    ASUS ROG Maximus XI Formula Z390
    Memory
    64 GB (4x16GB) G.SKILL TridentZ RGB DDR4 3600 MHz (F4-3600C18D-32GTZR)
    Graphics Card(s)
    ASUS ROG-STRIX-GTX1080TI-O11G-GAMING (11GB GDDR5X)
    Sound Card
    Integrated Digital Audio (S/PDIF)
    Monitor(s) Displays
    2 x Samsung Odyssey G75 27"
    Screen Resolution
    2560x1440
    Hard Drives
    1TB Samsung 990 PRO M.2,
    4TB Samsung 990 PRO M.2,
    8TB WD MyCloudEX2Ultra NAS
    PSU
    Seasonic Prime Titanium 850W
    Case
    Thermaltake Core P3 wall mounted
    Cooling
    Corsair Hydro H115i
    Keyboard
    Logitech wireless K800
    Mouse
    Logitech MX Master 3
    Internet Speed
    1 Gbps Download and 35 Mbps Upload
    Browser
    Google Chrome
    Antivirus
    Microsoft Defender and Malwarebytes Premium
    Other Info
    Logitech Z625 speaker system,
    Logitech BRIO 4K Pro webcam,
    HP Color LaserJet Pro MFP M477fdn,
    APC SMART-UPS RT 1000 XL - SURT1000XLI,
    Galaxy S23 Plus phone
  • Operating System
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    HP Spectre x360 2in1 14-eu0098nr (2024)
    CPU
    Intel Core Ultra 7 155H 4.8 GHz
    Memory
    16 GB LPDDR5x-7467 MHz
    Graphics card(s)
    Integrated Intel Arc
    Sound Card
    Poly Studio
    Monitor(s) Displays
    14" 2.8K OLED multitouch
    Screen Resolution
    2880 x 1800
    Hard Drives
    2 TB PCIe NVMe M.2 SSD
    Internet Speed
    Intel Wi-Fi 7 BE200 (2x2) and Bluetooth 5.4
    Browser
    Chrome and Edge
    Antivirus
    Windows Defender and Malwarebytes Premium
I'm a novice. Reading this scares the hell out of me. I honestly don't understand what it is asking everyone to do.

I use Macrium Reflect 8.1 with the Windows boot manager with Macrium on a spare internal SSD drive and the backups on another. I also have the rescue media on a USB drive.

Are they saying Macrium boot media will not work unless I do something? What have I got to do? Panic.... :boom:
 

My Computers

System One System Two

  • OS
    Win 11 Pro 22631.3527
    Computer type
    PC/Desktop
    Manufacturer/Model
    Digital Storm Velox
    CPU
    Intel Core i9-10940X
    Motherboard
    MSI X299 PRO (Intel X299 Chipset) (Up to 4x PCI-E Devices)
    Memory
    128 GB DDR4 3200 MHz Corsair Vengance LPX
    Graphics Card(s)
    EVGA GeForce RTX 2080 Ti Black
    Sound Card
    Integrated Motherboard Audio-Realtek
    Monitor(s) Displays
    CORSAIR XENEON 32QHD
    Screen Resolution
    2560 x 1440
    Hard Drives
    2 Samsung 980 Pro NVME 2TB
    1x Storage (6TB Western Digital
    PSU
    Corsair / EVGA / Thermaltake (Modular) (80 Plus Gold)
    Case
    VELOX
    Cooling
    H20: Stage 2: Digital Storm Vortex Liquid CPU Cooler (Dual Fan) (Fully Sealed + No Maintenance)
    Keyboard
    Corsair K63 Wireless
    Mouse
    Corsair NIGHTSWORD RGB
    Internet Speed
    1000Gb's Down-20 Up
    Browser
    Firefox 125.0.2
    Antivirus
    Windows Defender
    Other Info
    Cyber power CP1350AVRLCD -UPS
    NVIDIA 552.22 Driver
  • Operating System
    Arch Linux
    Computer type
    PC/Desktop
    Manufacturer/Model
    Intel NUC13ANHi3
    CPU
    Intel Core i3 1315u
    Motherboard
    NUC13AN
    Memory
    64GB GSKILL DDR4 3200
    Graphics card(s)
    Intel On Board
    Sound Card
    Intel on Board
    Monitor(s) Displays
    Dell 2419HGCF
    Screen Resolution
    1920 X 1080
    Hard Drives
    1TB Crucial M2NVME
    PSU
    External 90 Watt
    Case
    NUC Tall
    Cooling
    Fan
    Mouse
    Razer
    Keyboard
    Logitech
    Internet Speed
    1GB
    Browser
    Slimjet 43.0.1.0
    Other Info
    quiet & fast
Currently...

AMD fTPM 2.0 and Secure Boot are on, revocations not done. Macrium bootable rescue media is PE version and boots fine.
Macrium version 8.0.6635
 

My Computers

System One System Two

  • OS
    Win 11 Home ♦♦♦22631.3527 ♦♦♦♦♦♦♦23H2
    Computer type
    PC/Desktop
    Manufacturer/Model
    Built by Ghot® [May 2020]
    CPU
    AMD Ryzen 7 3700X
    Motherboard
    Asus Pro WS X570-ACE (BIOS 4702)
    Memory
    G.Skill (F4-3200C14D-16GTZKW)
    Graphics Card(s)
    EVGA RTX 2070 (08G-P4-2171-KR)
    Sound Card
    Realtek ALC1220P / ALC S1220A
    Monitor(s) Displays
    Dell U3011 30"
    Screen Resolution
    2560 x 1600
    Hard Drives
    2x Samsung 860 EVO 500GB,
    WD 4TB Black FZBX - SATA III,
    WD 8TB Black FZBX - SATA III,
    DRW-24B1ST CD/DVD Burner
    PSU
    PC Power & Cooling 750W Quad EPS12V
    Case
    Cooler Master ATCS 840 Tower
    Cooling
    CM Hyper 212 EVO (push/pull)
    Keyboard
    Ducky DK9008 Shine II Blue LED
    Mouse
    Logitech Optical M-100
    Internet Speed
    300/300
    Browser
    Firefox (latest)
    Antivirus
    Bitdefender Internet Security
    Other Info
    Speakers: Klipsch Pro Media 2.1
  • Operating System
    Windows XP Pro 32bit w/SP3
    Computer type
    PC/Desktop
    Manufacturer/Model
    Built by Ghot® (not in use)
    CPU
    AMD Athlon 64 X2 5000+ (OC'd @ 3.2Ghz)
    Motherboard
    ASUS M2N32-SLI Deluxe Wireless Edition
    Memory
    TWIN2X2048-6400C4DHX (2 x 1GB, DDR2 800)
    Graphics card(s)
    EVGA 256-P2-N758-TR GeForce 8600GT SSC
    Sound Card
    Onboard
    Monitor(s) Displays
    ViewSonic G90FB Black 19" Professional (CRT)
    Screen Resolution
    up to 2048 x 1536
    Hard Drives
    WD 36GB 10,000rpm Raptor SATA
    Seagate 80GB 7200rpm SATA
    Lite-On LTR-52246S CD/RW
    Lite-On LH-18A1P CD/DVD Burner
    PSU
    PC Power & Cooling Silencer 750 Quad EPS12V
    Case
    Generic Beige case, 80mm fans
    Cooling
    ZALMAN 9500A 92mm CPU Cooler
    Mouse
    Logitech Optical M-BT96a
    Keyboard
    Logitech Classic Keybooard 200
    Internet Speed
    300/300
    Browser
    Firefox 3.x ??
    Antivirus
    Symantec (Norton)
    Other Info
    Still assembled, still runs. Haven't turned it on for 13 years?
Macrium bootable rescue media is PE version and boots fine.
And it will continue to work until MS slaps the revocations on secure boot users automatically. It's all a mystery in the making.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro 23H2 22631.3447
    Computer type
    PC/Desktop
    Manufacturer/Model
    Dell Optiplex 7080
    CPU
    i9-10900 10 core 20 threads
    Motherboard
    DELL 0J37VM
    Memory
    32 gb
    Graphics Card(s)
    none-Intel UHD Graphics 630
    Sound Card
    Integrated Realtek
    Monitor(s) Displays
    Benq 27
    Screen Resolution
    2560x1440
    Hard Drives
    1tb Solidigm m.2 +256gb ssd+512 gb usb m.2 sata
    PSU
    500w
    Case
    MT
    Cooling
    Dell Premium
    Keyboard
    Logitech wired
    Mouse
    Logitech wireless
    Internet Speed
    so slow I'm too embarrassed to tell
    Browser
    Firefox
    Antivirus
    Defender+MWB Premium
  • Operating System
    Windows 10 Pro 22H2 19045.3930
    Computer type
    PC/Desktop
    Manufacturer/Model
    Dell Optiplex 9020
    CPU
    i7-4770
    Memory
    24 gb
    Monitor(s) Displays
    Benq 27
    Screen Resolution
    2560x1440
    Hard Drives
    256 gb Toshiba BG4 M.2 NVE SSB and 1 tb hdd
    PSU
    500w
    Case
    MT
    Cooling
    Dell factory
    Mouse
    Logitech wireless
    Keyboard
    Logitech wired
    Internet Speed
    still not telling
    Browser
    Firefox
    Antivirus
    Defender+MWB Premium
And it will continue to work until MS slaps the revocations on secure boot users automatically. It's all a mystery in the making.


Hopefully, they'll have an updated ADK by then. :/
As usual MS seems to be doing this backwards. Revocations before the updated associated needed software.

MS: "Yes, the aircraft carrier is on fire, but we plugged that half inch hole below the water line. Aren't we awesome?"
 

My Computers

System One System Two

  • OS
    Win 11 Home ♦♦♦22631.3527 ♦♦♦♦♦♦♦23H2
    Computer type
    PC/Desktop
    Manufacturer/Model
    Built by Ghot® [May 2020]
    CPU
    AMD Ryzen 7 3700X
    Motherboard
    Asus Pro WS X570-ACE (BIOS 4702)
    Memory
    G.Skill (F4-3200C14D-16GTZKW)
    Graphics Card(s)
    EVGA RTX 2070 (08G-P4-2171-KR)
    Sound Card
    Realtek ALC1220P / ALC S1220A
    Monitor(s) Displays
    Dell U3011 30"
    Screen Resolution
    2560 x 1600
    Hard Drives
    2x Samsung 860 EVO 500GB,
    WD 4TB Black FZBX - SATA III,
    WD 8TB Black FZBX - SATA III,
    DRW-24B1ST CD/DVD Burner
    PSU
    PC Power & Cooling 750W Quad EPS12V
    Case
    Cooler Master ATCS 840 Tower
    Cooling
    CM Hyper 212 EVO (push/pull)
    Keyboard
    Ducky DK9008 Shine II Blue LED
    Mouse
    Logitech Optical M-100
    Internet Speed
    300/300
    Browser
    Firefox (latest)
    Antivirus
    Bitdefender Internet Security
    Other Info
    Speakers: Klipsch Pro Media 2.1
  • Operating System
    Windows XP Pro 32bit w/SP3
    Computer type
    PC/Desktop
    Manufacturer/Model
    Built by Ghot® (not in use)
    CPU
    AMD Athlon 64 X2 5000+ (OC'd @ 3.2Ghz)
    Motherboard
    ASUS M2N32-SLI Deluxe Wireless Edition
    Memory
    TWIN2X2048-6400C4DHX (2 x 1GB, DDR2 800)
    Graphics card(s)
    EVGA 256-P2-N758-TR GeForce 8600GT SSC
    Sound Card
    Onboard
    Monitor(s) Displays
    ViewSonic G90FB Black 19" Professional (CRT)
    Screen Resolution
    up to 2048 x 1536
    Hard Drives
    WD 36GB 10,000rpm Raptor SATA
    Seagate 80GB 7200rpm SATA
    Lite-On LTR-52246S CD/RW
    Lite-On LH-18A1P CD/DVD Burner
    PSU
    PC Power & Cooling Silencer 750 Quad EPS12V
    Case
    Generic Beige case, 80mm fans
    Cooling
    ZALMAN 9500A 92mm CPU Cooler
    Mouse
    Logitech Optical M-BT96a
    Keyboard
    Logitech Classic Keybooard 200
    Internet Speed
    300/300
    Browser
    Firefox 3.x ??
    Antivirus
    Symantec (Norton)
    Other Info
    Still assembled, still runs. Haven't turned it on for 13 years?
Hopefully, they'll have an updated ADK by then. :/
As usual MS seems to be doing this backwards. Revocations before the updated associated needed software.

MS: "Yes, the aircraft carrier is on fire, but we plugged that half inch hole below the water line. Aren't we awesome?"
But it's easy to update the ADK on your own :-)

Okay, I lie. I should say that it is easy if you use my batch file. Yes, I spent way too much time geeking out on this issue.

 

My Computers

System One System Two

  • OS
    Win11 Pro 23H2
    Computer type
    PC/Desktop
    Manufacturer/Model
    Home Built
    CPU
    Intel i7-11700K
    Motherboard
    ASUS Prime Z590-A
    Memory
    128GB Crucial Ballistix 3200MHz DRAM
    Graphics Card(s)
    No GPU - CPU graphics only (for now)
    Sound Card
    Realtek (on motherboard)
    Monitor(s) Displays
    HP Envy 32
    Screen Resolution
    2560 x 1440
    Hard Drives
    1 x 1TB NVMe Gen 4 x 4 SSD
    1 x 2TB NVMe Gen 3 x 4 SSD
    2 x 512GB 2.5" SSDs
    2 x 8TB HD
    PSU
    Corsair HX850i
    Case
    Corsair iCue 5000X RGB
    Cooling
    Noctua NH-D15 chromax.black cooler + 10 case fans
    Keyboard
    CODE backlit mechanical keyboard
    Mouse
    Logitech MX Master 3
    Internet Speed
    1Gb Up / 1 Gb Down
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    Additional options installed:
    WiFi 6E PCIe adapter
    ASUS ThunderboltEX 4 PCIe adapter
  • Operating System
    Win11 Pro 23H2
    Computer type
    Laptop
    Manufacturer/Model
    Lenovo ThinkBook 13x Gen 2
    CPU
    Intel i7-1255U
    Memory
    16 GB
    Graphics card(s)
    Intel Iris Xe Graphics
    Sound Card
    Realtek® ALC3306-CG codec
    Monitor(s) Displays
    13.3-inch IPS Display
    Screen Resolution
    WQXGA (2560 x 1600)
    Hard Drives
    2 TB 4 x 4 NVMe SSD
    PSU
    USB-C / Thunderbolt 4 Power / Charging
    Mouse
    Buttonless Glass Precision Touchpad
    Keyboard
    Backlit, spill resistant keyboard
    Internet Speed
    1Gb Up / 1Gb Down
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    WiFi 6e / Bluetooth 5.1 / Facial Recognition / Fingerprint Sensor / ToF (Time of Flight) Human Presence Sensor
But it's easy to update the ADK on your own :-)

Okay, I lie. I should say that it is easy if you use my batch file. Yes, I spent way too much time geeking out on this issue.



Bookmarked.
I'm not even gonna attempt that without a good night's sleep.

I'm so tired right now, I can't even "read" all that. :-)
 

My Computers

System One System Two

  • OS
    Win 11 Home ♦♦♦22631.3527 ♦♦♦♦♦♦♦23H2
    Computer type
    PC/Desktop
    Manufacturer/Model
    Built by Ghot® [May 2020]
    CPU
    AMD Ryzen 7 3700X
    Motherboard
    Asus Pro WS X570-ACE (BIOS 4702)
    Memory
    G.Skill (F4-3200C14D-16GTZKW)
    Graphics Card(s)
    EVGA RTX 2070 (08G-P4-2171-KR)
    Sound Card
    Realtek ALC1220P / ALC S1220A
    Monitor(s) Displays
    Dell U3011 30"
    Screen Resolution
    2560 x 1600
    Hard Drives
    2x Samsung 860 EVO 500GB,
    WD 4TB Black FZBX - SATA III,
    WD 8TB Black FZBX - SATA III,
    DRW-24B1ST CD/DVD Burner
    PSU
    PC Power & Cooling 750W Quad EPS12V
    Case
    Cooler Master ATCS 840 Tower
    Cooling
    CM Hyper 212 EVO (push/pull)
    Keyboard
    Ducky DK9008 Shine II Blue LED
    Mouse
    Logitech Optical M-100
    Internet Speed
    300/300
    Browser
    Firefox (latest)
    Antivirus
    Bitdefender Internet Security
    Other Info
    Speakers: Klipsch Pro Media 2.1
  • Operating System
    Windows XP Pro 32bit w/SP3
    Computer type
    PC/Desktop
    Manufacturer/Model
    Built by Ghot® (not in use)
    CPU
    AMD Athlon 64 X2 5000+ (OC'd @ 3.2Ghz)
    Motherboard
    ASUS M2N32-SLI Deluxe Wireless Edition
    Memory
    TWIN2X2048-6400C4DHX (2 x 1GB, DDR2 800)
    Graphics card(s)
    EVGA 256-P2-N758-TR GeForce 8600GT SSC
    Sound Card
    Onboard
    Monitor(s) Displays
    ViewSonic G90FB Black 19" Professional (CRT)
    Screen Resolution
    up to 2048 x 1536
    Hard Drives
    WD 36GB 10,000rpm Raptor SATA
    Seagate 80GB 7200rpm SATA
    Lite-On LTR-52246S CD/RW
    Lite-On LH-18A1P CD/DVD Burner
    PSU
    PC Power & Cooling Silencer 750 Quad EPS12V
    Case
    Generic Beige case, 80mm fans
    Cooling
    ZALMAN 9500A 92mm CPU Cooler
    Mouse
    Logitech Optical M-BT96a
    Keyboard
    Logitech Classic Keybooard 200
    Internet Speed
    300/300
    Browser
    Firefox 3.x ??
    Antivirus
    Symantec (Norton)
    Other Info
    Still assembled, still runs. Haven't turned it on for 13 years?
I'm not even gonna attempt that without a good night's sleep
I don't think a good night's sleep would be enough for me. It may be too far over my head. For now, I'm leaving secure boot off. If Macrium doesn't give some answers soon I was thinking about trying to sweet talk @hsehestedt into making me a copy of his. I mean, I do have an edge over the rest of you. We Texans have a special bond, don't cha' know. We're like our own secret society, bound by Smith & Wesson and the Colt 45, secret handshakes and all.
Just kidding...sorta...maybe not. :wink:
 

My Computers

System One System Two

  • OS
    Windows 11 Pro 23H2 22631.3447
    Computer type
    PC/Desktop
    Manufacturer/Model
    Dell Optiplex 7080
    CPU
    i9-10900 10 core 20 threads
    Motherboard
    DELL 0J37VM
    Memory
    32 gb
    Graphics Card(s)
    none-Intel UHD Graphics 630
    Sound Card
    Integrated Realtek
    Monitor(s) Displays
    Benq 27
    Screen Resolution
    2560x1440
    Hard Drives
    1tb Solidigm m.2 +256gb ssd+512 gb usb m.2 sata
    PSU
    500w
    Case
    MT
    Cooling
    Dell Premium
    Keyboard
    Logitech wired
    Mouse
    Logitech wireless
    Internet Speed
    so slow I'm too embarrassed to tell
    Browser
    Firefox
    Antivirus
    Defender+MWB Premium
  • Operating System
    Windows 10 Pro 22H2 19045.3930
    Computer type
    PC/Desktop
    Manufacturer/Model
    Dell Optiplex 9020
    CPU
    i7-4770
    Memory
    24 gb
    Monitor(s) Displays
    Benq 27
    Screen Resolution
    2560x1440
    Hard Drives
    256 gb Toshiba BG4 M.2 NVE SSB and 1 tb hdd
    PSU
    500w
    Case
    MT
    Cooling
    Dell factory
    Mouse
    Logitech wireless
    Keyboard
    Logitech wired
    Internet Speed
    still not telling
    Browser
    Firefox
    Antivirus
    Defender+MWB Premium
After reading all the articles, I have only ONE question. Why is Microsoft leaving the steps to perform to the average user.? Could Microsoft help users with an automatic step?. I guess it can, but doesn't want to.....
I'm going to take my time.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Lenovo ThinkPad X1 3Gen Extreme
    CPU
    I7 10750H
    Motherboard
    Intel MW-490
    Memory
    32 GB
    Graphics Card(s)
    Intel UHD - NVIDIA 1650 Ti Max-Q
    Sound Card
    Realtek in-built
    Screen Resolution
    3840x2160 200% Scale
    Hard Drives
    C: WDC PC SN730 SDBQNTY-1T00-1001 (1 TB)
    D: KINGSTON SNV2S2000G (2 TB)
    Antivirus
    BitDefender Free
  • Operating System
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Lenovo IdeaPad S340 81NB
    CPU
    AMD Ryzen 5 3500U with Radeon Vega Mobile Gfx 2.10 GHz
    Motherboard
    LENOVO LNVNB161216
    Memory
    8 GB
    Graphics card(s)
    Radeon Vega Mobile Gfx
    Sound Card
    Realtek
    Screen Resolution
    1366x768
    Hard Drives
    C: SSD 128GB (RPFTJ128PDD2EWX)
    D: HDD 1 TB (Seagate ST1000LM035-1RK172)
    Antivirus
    BitDefender
I stumbled at the first hurdle. What's an ADK?
 

My Computers

System One System Two

  • OS
    Windows 11 Pro 22H2
    Computer type
    PC/Desktop
    Manufacturer/Model
    Bob the Builder
    CPU
    Intel i7-13700KF @ 5.4GHz
    Motherboard
    MSI MPG Z790 Edge WiFi DDR4
    Memory
    G-Skill F4-3200C16-16GVK x 2 (32GB total)
    Graphics Card(s)
    GeForce RTX 3060 Ti Ventus 2X 8G OCV1 LHR
    Sound Card
    Realtek® ALC4080 (mobo chipset)
    Monitor(s) Displays
    Philips 28 inch Display 288E2UAE
    Screen Resolution
    3840 x 2160 (16 x 9)
    Hard Drives
    Samsung 980 Pro NVMe M2 500GB, Samsung 980 NVMe M2 500GB, Samsung 2.5" SSD 1TB, Seagate 2.5" ST5000 5TB, Seagate Barracuda NVMe M2 1TB, Samsung MZVL2512HCJQ OEM NVMe M2 1TB
    PSU
    MSI MPG R850GF PSU (850W)
    Case
    Fractal Design Define 7 Compact ATX
    Cooling
    CoolerMaster MA610P
    Keyboard
    HAVIT mechanical keyboard HV-KB390L TKL
    Mouse
    Logitech M350 Pebble Mouse BT + wireless
    Internet Speed
    50 x 20 megabits / second fibre
    Browser
    Microsoft Edge
    Antivirus
    Microsoft
    Other Info
    Intel Ethernet 1226-V 2.5GHz @ 1GHz
    Intel Wi-Fi 6E AX210
    ASUS router RT-AX86U with Wi-Fi 6
    Logitech BRIO webcam
    Macrium Reflect 8.1 paid for backups etc.
  • Operating System
    Win 11 Pro 22H2
    Computer type
    Laptop
    Manufacturer/Model
    MSI SUMMIT E16 FLIP EVO A11MT-013AU
    CPU
    Intel i7-1195G7
    Memory
    16 GB
    Graphics card(s)
    Iris Xe graphics
    Sound Card
    Realtek High Definition Audio
    Monitor(s) Displays
    16" 120Hz Pen Touch panel
    Screen Resolution
    2560 x 1600 (16 x 10)
    Hard Drives
    Samsung NVMe 980 Pro 1TB
    PSU
    Delta Electronics ADP-65SD B, HP 1HE08AA
    Mouse
    Logitech M350 Pebble Mouse BT + wireless
    Keyboard
    Full Keyboard
    Internet Speed
    50 x 20 megabits / second fibre
    Browser
    Firefox
    Antivirus
    Microsoft
    Other Info
    Killer Wi-Fi 6E 1675x (210NGW)
    MSI Pen
    Web Cam with Windows Hello Face
    Fingerprint Reader
    ASUS router RT-AX86U with Wi-Fi 6
    Macrium Reflect 8 paid for backups etc.
After reading all the articles, I have only ONE question. Why is Microsoft leaving the steps to perform to the average user.? Could Microsoft help users with an automatic step?. I guess it can, but doesn't want to.....
I'm going to take my time.

Cause after applying the update - most "average users" - wouldn't be able to use a back-up or reinstall windows in case they ran into some issues. It's been awhile since the release and there's still no updated Win 11 ISO - you have to integrate the update manually.
 

My Computer

System One

  • OS
    Windows 7 SP 16 (or Windows 11 SP 2 or Sun Valley 2)
    Computer type
    Laptop
    CPU
    Intel & AMD
    Memory
    SO-DIMM SK Hynix 15.8 GB Dual-Channel DDR4-2666 (2 x 8 GB) 1329MHz (19-19-19-43)
    Graphics Card(s)
    nVidia RTX 2060 6GB Mobile GPU (TU106M)
    Sound Card
    Onbord Realtek ALC1220
    Screen Resolution
    1920 x 1080
    Hard Drives
    1x Samsung PM981 NVMe PCIe M.2 512GB / 1x Seagate Expansion ST1000LM035 1TB
What's an ADK?
Assessment and Deployment Kit- a compilation of MS tools to customize, assess, and deploy Windows operating systems to new computers.
Normally used by IT professionals and OEMs.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro 23H2 22631.3447
    Computer type
    PC/Desktop
    Manufacturer/Model
    Dell Optiplex 7080
    CPU
    i9-10900 10 core 20 threads
    Motherboard
    DELL 0J37VM
    Memory
    32 gb
    Graphics Card(s)
    none-Intel UHD Graphics 630
    Sound Card
    Integrated Realtek
    Monitor(s) Displays
    Benq 27
    Screen Resolution
    2560x1440
    Hard Drives
    1tb Solidigm m.2 +256gb ssd+512 gb usb m.2 sata
    PSU
    500w
    Case
    MT
    Cooling
    Dell Premium
    Keyboard
    Logitech wired
    Mouse
    Logitech wireless
    Internet Speed
    so slow I'm too embarrassed to tell
    Browser
    Firefox
    Antivirus
    Defender+MWB Premium
  • Operating System
    Windows 10 Pro 22H2 19045.3930
    Computer type
    PC/Desktop
    Manufacturer/Model
    Dell Optiplex 9020
    CPU
    i7-4770
    Memory
    24 gb
    Monitor(s) Displays
    Benq 27
    Screen Resolution
    2560x1440
    Hard Drives
    256 gb Toshiba BG4 M.2 NVE SSB and 1 tb hdd
    PSU
    500w
    Case
    MT
    Cooling
    Dell factory
    Mouse
    Logitech wireless
    Keyboard
    Logitech wired
    Internet Speed
    still not telling
    Browser
    Firefox
    Antivirus
    Defender+MWB Premium
to Microsoftafter applying the update - most "average users" - wouldn't be able to use a back-up or reinstall windows in case they ran into some issues. It's been awhile since the release and there's still no updated Win 11 ISO - you have to integrate the update manually.
Got your point, but I was adressing the revocations steps to Microsoft for automating the process
 

My Computers

System One System Two

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Lenovo ThinkPad X1 3Gen Extreme
    CPU
    I7 10750H
    Motherboard
    Intel MW-490
    Memory
    32 GB
    Graphics Card(s)
    Intel UHD - NVIDIA 1650 Ti Max-Q
    Sound Card
    Realtek in-built
    Screen Resolution
    3840x2160 200% Scale
    Hard Drives
    C: WDC PC SN730 SDBQNTY-1T00-1001 (1 TB)
    D: KINGSTON SNV2S2000G (2 TB)
    Antivirus
    BitDefender Free
  • Operating System
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Lenovo IdeaPad S340 81NB
    CPU
    AMD Ryzen 5 3500U with Radeon Vega Mobile Gfx 2.10 GHz
    Motherboard
    LENOVO LNVNB161216
    Memory
    8 GB
    Graphics card(s)
    Radeon Vega Mobile Gfx
    Sound Card
    Realtek
    Screen Resolution
    1366x768
    Hard Drives
    C: SSD 128GB (RPFTJ128PDD2EWX)
    D: HDD 1 TB (Seagate ST1000LM035-1RK172)
    Antivirus
    BitDefender

My Computers

System One System Two

  • OS
    Win 11 Pro 23H2 22631.3527
    Computer type
    PC/Desktop
    Manufacturer/Model
    Self Built
    CPU
    Intel® Core™ i7-14700F
    Motherboard
    ASUS TUF GAMING Z690-PLUS WIFI
    Memory
    G.SKILL Ripjaws S5 Series 64GB (2 x 32GB) DDR5
    Graphics Card(s)
    EVGA GeForce RTX 3050 XC Black Gaming
    Sound Card
    Sound Blaster AE-5 Plus
    Monitor(s) Displays
    ASUS TUF Gaming 27" 2K HDR Gaming
    Screen Resolution
    2560 x 1440
    Hard Drives
    Samsung 990 Pro 1TB NVMe (Win 11)
    SK hynix P41 500GB NVMe (Win 10)
    SK hynix P41 2TB NVMe (x3)
    Crucial P3 Plus 4TB
    PSU
    Corsair RM850x Shift
    Case
    Antec Dark Phantom DP502 FLUX
    Cooling
    Noctua NH-U12A chromax.black + 7 Phantek T-30's
    Keyboard
    Logitech MK 320
    Mouse
    Razer Basilisk V3
    Internet Speed
    350Mbs
    Browser
    Firefox
    Antivirus
    Winows Security
    Other Info
    Windows 10 22H2 19045.4291
    On System One
  • Operating System
    Win 11 Pro 23H2 22631.3527
    Computer type
    PC/Desktop
    Manufacturer/Model
    Self Built
    CPU
    Intel Core i7-11700F
    Motherboard
    Asus TUF Gaming Z590 Plus WiFi
    Memory
    64 GB DDR4
    Graphics card(s)
    EVGA RTX 2060 KO Ultra Gaming
    Sound Card
    SoundBlaster X-Fi Titanium
    Monitor(s) Displays
    Samsung F27T350
    Screen Resolution
    1920x1080
    Hard Drives
    Samsung 980 Pro 1TB
    Samsung 970 EVO Plus 2TB
    Samsung 870 EVO 500GB SSD
    PSU
    Corsair HX750
    Case
    Cougar MX330-G Window
    Cooling
    Hyper 212 EVO
    Internet Speed
    350Mbps
    Browser
    Firefox
    Antivirus
    Windows Security
How is a normal user meant to know about any of this? They will just rely on MS update and will be mystified if the update process breaks something.
 

My Computer

System One

  • OS
    Windows 11 Pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    Self build
    CPU
    Core i7-13700K
    Motherboard
    Asus TUF Gaming Plus WiFi Z790
    Memory
    64 GB Kingston Fury Beast DDR5
    Graphics Card(s)
    Gigabyte GeForce RTX 2060 Super Gaming OC 8G
    Sound Card
    Realtek S1200A
    Monitor(s) Displays
    Viewsonic VP2770
    Screen Resolution
    2560 x 1440
    Hard Drives
    Kingston KC3000 2TB NVME SSD & SATA HDDs & SSD
    PSU
    EVGA SuperNova G2 850W
    Case
    Nanoxia Deep Silence 1
    Cooling
    Noctua NH-D14
    Keyboard
    Microsoft Digital Media Pro
    Mouse
    Logitech Wireless
    Internet Speed
    50 Mb / s
    Browser
    Chrome
    Antivirus
    Defender
Honestly the user side of implementation is pretty easy which is why I did it to my machines when it first became available. You can copy and paste the instructions into the command console and be done with it. Works the same with both Intel and AMD pc's.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    Self Built
    CPU
    Intel Core i9 13900k, Intel UHD 770 integrated
    Motherboard
    MSI MEG Z790 ACE
    Memory
    32gb G.Skill Trident Z5 6600
    Graphics Card(s)
    Gigabyte RTX 4090 Gaming OC
    Sound Card
    EVGA Nu Audio, Razer Kraken V3 Pro, Realtek Onboard
    Monitor(s) Displays
    LG 38GN950-B, Benq EX3415R nano IPS monitors
    Screen Resolution
    3840x1600, 3440X1440
    Hard Drives
    Samsung 970 Pro, Samsung 850 Pro, Crucial MX500, WD Black SN700, WD Black 8tb HD
    PSU
    EVGA Supernova G2 1300w
    Case
    Thermaltake Level 20 XT
    Cooling
    ARCTIC Liquid Freezer III 420 ARGB in push/pull, Antec Prism X 120mm ARGB Fans x 15
    Keyboard
    Razer Huntsman Elite V1
    Mouse
    Corsair Dark Core Pro SE on an Asus ROG Balteus Qi pad
    Internet Speed
    450Mbps cable primary, 6Mbps secondary vdsl
    Browser
    Chrome primary, FF-Edge-IE secondary
    Antivirus
    Norton 360 Premium
    Other Info
    I sit on a Secret Lab Titan XL 2020 chair.😍
  • Operating System
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    2021 HP Omen
    CPU
    AMD Ryzen 7 5800H
    Motherboard
    factory
    Memory
    16gb ddr 3200
    Graphics card(s)
    Nvidia RTX 3060 Mobile
    Sound Card
    onboard B&O
    Monitor(s) Displays
    15.6" 144hz IPS
    Screen Resolution
    1920x1080
    Hard Drives
    Hynix 512gb nvme ssd, WD Black SN850 2TB nvme ssd
    PSU
    factory
    Case
    factory
    Cooling
    factory with ARCTIC MX-6
    Mouse
    touchpad and Logitech wireless mouse
    Keyboard
    4 zone rgb
    Internet Speed
    WiFi 6, 1gb ethernet
    Browser
    Chrome primary, FF-IE and Edge secondary
    Antivirus
    Norton 360 Premium
Got your point, but I was adressing the revocations steps to Microsoft for automating the process

Was talking about same thing. As in... if Microsoft did just that now (an update which automatically applies the revocations for everyone using Windows) - and a user (or thousands of them) - would run into an issue which requires a reinstall or booting from a back-up (which was made on a Windows - that doesn't have this revocations integrated) - the ones in question won't be able to boot from any media- let alone reinstall it. The workaround is supposedly an easy one (disable Secure Boot) - but there's millions of average users who don't know that (since this step was never needed before). Yet, the many thousands who know how to install Windows - but are unaware of this detail - would think it's an hardware issues (since that's usually the case - if your system can't boot). Which in turn can turn to a huge fiasco for Microsoft, maybe even lawsuits. This update will be applied automatically in 2024 - so by then - they expect their users to learn about it and have a proper back-up/install media prepared. So far - even the downloadable Windows from Microsoft oficial download page (using the Media Creation Tool) - doesn't have this update integrated. That too will change this year - so by 2024 one would be able to make a bookable media with the official latest version - and use that to boot and install Windows - in case they didn't make one themselves.

The thing is - this is not just an Update for Windows, it's mainly an update for Secure Boot - which applies even to other Operating Systems (Linux and co.).
 

My Computer

System One

  • OS
    Windows 7 SP 16 (or Windows 11 SP 2 or Sun Valley 2)
    Computer type
    Laptop
    CPU
    Intel & AMD
    Memory
    SO-DIMM SK Hynix 15.8 GB Dual-Channel DDR4-2666 (2 x 8 GB) 1329MHz (19-19-19-43)
    Graphics Card(s)
    nVidia RTX 2060 6GB Mobile GPU (TU106M)
    Sound Card
    Onbord Realtek ALC1220
    Screen Resolution
    1920 x 1080
    Hard Drives
    1x Samsung PM981 NVMe PCIe M.2 512GB / 1x Seagate Expansion ST1000LM035 1TB
Great, I can not update BIOS, because it causes a constant BSOD due to invalid signature, most likely secure boot misconfiguration. :cautious:
 

My Computer

System One

  • OS
    Windows 11 Home
    Computer type
    PC/Desktop
    CPU
    AMD Ryzen 5 3600 & No fTPM (07/19)
    Motherboard
    MSI B450 TOMAHAWK 7C02v1E & IFX TPM (07/19)
    Memory
    4x 8GB ADATA XPG GAMMIX D10 DDR4 3200MHz CL16
    Graphics Card(s)
    MSI Radeon RX 580 ARMOR 8G OC @48FPS (08/19)
    Sound Card
    Creative Sound Blaster Z (11/16)
    Monitor(s) Displays
    24" AOC G2460VQ6 (01/19)
    Screen Resolution
    1920×1080@75Hz & FreeSync (DisplayPort)
    Hard Drives
    ADATA XPG GAMMIX S11 Pro SSD 512GB (07/19)
    PSU
    Seasonic M12II-520 80 Plus Bronze (11/16)
    Case
    Lian Li PC-7NB & 3x Noctua NF-S12A FLX@700rpm (11/16)
    Cooling
    CPU Cooler Noctua NH-U12S@700rpm (07/19)
    Keyboard
    HP Wired Desktop 320K + Rabalux 76017 Parker (01/24)
    Mouse
    Logitech M330 Silent Plus (04/23)
    Internet Speed
    400/40 Mbps via RouterOS (05/21) & TCP Optimizer
    Browser
    Edge (No FB/Google) & Brave for YouTube & LibreWolf for FB
    Antivirus
    NoAV & Binisoft WFC & NextDNS
    Other Info
    Headphones: Sennheiser RS170 (09/10)
    Phone: Samsung Galaxy Xcover 7 (02/24)
So far - even the downloadable Windows from Microsoft oficial download page (using the Media Creation Tool) - doesn't have this update integrated.

Media Creation Tool was updated shortly after the "revecations" came out. It's the only media I can boot to without turning off Secure Boot with revocations applied.
 
Last edited:

My Computers

System One System Two

  • OS
    Win 11 Pro 23H2 22631.3527
    Computer type
    PC/Desktop
    Manufacturer/Model
    Self Built
    CPU
    Intel® Core™ i7-14700F
    Motherboard
    ASUS TUF GAMING Z690-PLUS WIFI
    Memory
    G.SKILL Ripjaws S5 Series 64GB (2 x 32GB) DDR5
    Graphics Card(s)
    EVGA GeForce RTX 3050 XC Black Gaming
    Sound Card
    Sound Blaster AE-5 Plus
    Monitor(s) Displays
    ASUS TUF Gaming 27" 2K HDR Gaming
    Screen Resolution
    2560 x 1440
    Hard Drives
    Samsung 990 Pro 1TB NVMe (Win 11)
    SK hynix P41 500GB NVMe (Win 10)
    SK hynix P41 2TB NVMe (x3)
    Crucial P3 Plus 4TB
    PSU
    Corsair RM850x Shift
    Case
    Antec Dark Phantom DP502 FLUX
    Cooling
    Noctua NH-U12A chromax.black + 7 Phantek T-30's
    Keyboard
    Logitech MK 320
    Mouse
    Razer Basilisk V3
    Internet Speed
    350Mbs
    Browser
    Firefox
    Antivirus
    Winows Security
    Other Info
    Windows 10 22H2 19045.4291
    On System One
  • Operating System
    Win 11 Pro 23H2 22631.3527
    Computer type
    PC/Desktop
    Manufacturer/Model
    Self Built
    CPU
    Intel Core i7-11700F
    Motherboard
    Asus TUF Gaming Z590 Plus WiFi
    Memory
    64 GB DDR4
    Graphics card(s)
    EVGA RTX 2060 KO Ultra Gaming
    Sound Card
    SoundBlaster X-Fi Titanium
    Monitor(s) Displays
    Samsung F27T350
    Screen Resolution
    1920x1080
    Hard Drives
    Samsung 980 Pro 1TB
    Samsung 970 EVO Plus 2TB
    Samsung 870 EVO 500GB SSD
    PSU
    Corsair HX750
    Case
    Cougar MX330-G Window
    Cooling
    Hyper 212 EVO
    Internet Speed
    350Mbps
    Browser
    Firefox
    Antivirus
    Windows Security
Back
Top Bottom