Just updated my ASUS TUF GAMING B650-PLUS with the last BIOS that was spit out tonight, (Not BETA!) and I ran into something funny with the 1808 event:
Hadnt seen that one yet! But anyhow you know how it goes after a BIOS update, reset to default and decided to go factory Default with the boot-key's. Ok booted into 25H2 and done the registry punch and Powershell command as that was all I needed, rebooted and to my suprise "FirmwareSVN : 2.0" showed up again! HA_! So went back to the BIOS and Factory defaulted the boot key.' again and this time I run the modified "Update_UEFI-CA2023.ps1 -Revoke" script (had to remove the bitlocker script out as it was not working with me), anyhow rebooted and BAM
---------------------------
FirmwareSVN : 7.0
BootManagerSVN : 7.0
StagedSVN : 7.0
ComplianceStatus : Compliant (Boot Manager SVN meets staged SVN)
BootManagerPath : \\.\HarddiskVolume1\EFI\Microsoft\Boot\bootmgfw.efi
-----------
PS C:\Users\jwdav> powershell -nop -ep bypass -f C:\Temp\Check_UEFI-CA2023.ps1 -verbose
Windows 11 25H2 (26200.8037)
Secure Boot: ON
Virtualization Based Security: ON
BitLocker on (C:) OFF
BIOS Firmware
-------------
ASUS System Product Name
Version: 3842
Date: 2026-03-11
Factory Default UEFI PK Cert
----------------------------
ASUSTeK MotherBoard PK Certificate
UEFI PK Cert
------------
ASUSTeK MotherBoard PK Certificate
Factory Default UEFI KEK Certs
------------------------------
Microsoft Corporation KEK CA 2011
Microsoft Corporation KEK 2K CA 2023
ASUSTeK MotherBoard KEK Certificate
UEFI KEK Certs
--------------
Microsoft Corporation KEK CA 2011
Microsoft Corporation KEK 2K CA 2023
ASUSTeK MotherBoard KEK Certificate
Factory Default UEFI DB Certs
-----------------------------
Microsoft Corporation UEFI CA 2011
Microsoft Windows Production PCA 2011
Microsoft Option ROM UEFI CA 2023
Microsoft UEFI CA 2023
Windows UEFI CA 2023
ASUSTeK MotherBoard SW Key Certificate
ASUSTeK Notebook SW Key Certificate
UEFI DB Certs
-------------
Microsoft Corporation UEFI CA 2011
Microsoft Windows Production PCA 2011
Microsoft Option ROM UEFI CA 2023
Microsoft UEFI CA 2023
Windows UEFI CA 2023
ASUSTeK MotherBoard SW Key Certificate
ASUSTeK Notebook SW Key Certificate
Factory Default UEFI DBX Certs
------------------------------
(NONE)
EFI_CERT_SHA256_GUID Signatures: 430
UEFI DBX Certs
--------------
Microsoft Windows Production PCA 2011
Windows BootMgr SVN 7.0
EFI_CERT_SHA256_GUID Signatures: 437
EFI Files
---------
Windows Boot Manager [Windows UEFI CA 2023] is ALLOWED.
\\.\HarddiskVolume1\EFI\Microsoft\Boot\bootmgfw.efi
File Version: 26100.30227, SVN 7.0
Registry: WindowsUEFICA2023Capable = 2
[Windows UEFI CA 2023] in UEFI DB, and Windows starting from CA 2023 Boot Manager.
SkuSiPolicy.p7b is CURRENT.
\\.\HarddiskVolume1\EFI\Microsoft\Boot\SkuSiPolicy.p7b
Version: 33284.17421.33440.335
STATUS REPORT
-------------
Registry: UEFICA2023Status = Updated
SUCCESS: NO UPDATES ARE REQUIRED.
So all is back to "normal" I assume, just wanted to share that 1808 with you as that was new to me !
btw. on both machine's I have strange errors in the Registry:
[Computer\HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\ACPI_HAL\PNP0C08\0\Control]
AllocConfig / FilteredConfigVector and a couple below there show "invalid BS" prob. just another flaw in wonderfull Windows 11 .... ?