firmware updates

Winsage
July 14, 2026
Microsoft has acknowledged that several older Secure Boot certificates have expired, necessitating updates for Windows 10 and 11 users. A temporary halt in the issuance of new Secure Boot certificates affects specific PCs, particularly various HP models. Most PCs will receive updates automatically through Windows Update, but some may require a firmware update from the manufacturer. Users may see messages indicating that Secure Boot certificate updates are paused or blocked due to known issues or hardware/firmware limitations. Until manufacturers like HP release necessary firmware updates, users cannot update their Secure Boot certificates. Although the immediate risk from expired certificates is low, it is expected to increase over time. Devices with un-updated Secure Boot certificates will continue to function normally, but they will not receive new security updates, making them vulnerable to emerging threats. Essential features that rely on updated security measures may cease to function correctly as new security challenges arise.
Winsage
July 10, 2026
Microsoft has acknowledged that some Windows 11 PCs are facing issues with Secure Boot certificate updates, which may fail to install or be blocked. The company is working with PC manufacturers to develop a patch, while users may need to take proactive measures if their certificates are obstructed. Microsoft has temporarily halted the rollout of Secure Boot for certain devices due to complications, and affected users will receive detailed error messages in the Windows Security app regarding their Secure Boot certificates. Secure Boot certificates issued in 2011 have expired, and Microsoft is replacing them with new certificates issued in 2023. Most modern hardware is already utilizing the new certificates, but some devices may have disabled Secure Boot or faulty firmware. Users can check their Secure Boot status in the Windows Security app. HP has confirmed that Secure Boot updates are being blocked on some of its PCs due to a BitLocker issue, which prevents the installation of new certificates. Microsoft has paused Secure Boot certificate updates for devices affected by known issues while collaborating with manufacturers to identify specific devices or firmware complications. A firmware update will be necessary for affected devices, but it is not yet available. The majority of PCs have received the Secure Boot certificates via Windows Update, but compatibility issues may prevent some devices from receiving the update. Older devices or those not among the OEM’s top-selling models may not receive updates if the UEFI firmware is unsupported. Secure Boot is a security feature required for Windows 11, preventing unauthorized software from executing at boot. While an expired Secure Boot certificate does not stop a PC from functioning, it may limit long-term security protection. Microsoft advises users not to disable Secure Boot, as it would compromise security further.
Winsage
June 27, 2026
The Windows team at Microsoft has introduced a calendar-based option for pausing updates, allowing users to select a specific end date for their pause, extending up to 35 days. Users can set this by navigating to Settings > Windows Update and choosing their end date from a calendar. The calendar pause is not permanent; once the pause period ends, Windows will automatically check for and install updates. Users can manually reset the pause to extend it further by another 35 days. Additionally, Microsoft is consolidating driver, .NET, and firmware updates into a single monthly restart to enhance user experience. The "Update and shut down" feature has been improved, allowing users to shut down their PCs without installing pending updates. The calendar pause feature is available in the June optional update KB5095093, while the other changes are accessible to Windows Insiders in the Experimental and Beta channels.
Winsage
June 17, 2026
Microsoft rolled out several preview builds of Windows 11 in early June 2026 as part of the Windows Insider Program, focusing on refining existing functionalities rather than introducing many new features. A new Beta channel for version 26H1 was launched, featuring: - Screen Tint: An accessibility feature that provides a system-wide color overlay to reduce eye strain, accessible through Settings > Accessibility > Vision > Screen Tint, offering six preset colors or custom hues. - Low Latency Profile: Temporarily boosts processor frequency for 1 to 3 seconds during interactive tasks, improving application launch times by up to 40% and interaction times by as much as 70%, operating automatically without manual toggles. - Widgets Experience Update: Widgets now open without hover activation, Taskbar badges are off by default, and alerts are limited until user interaction. The dashboard displays Widgets under "widgets," and badging aligns with the system accent color. - Magnifier Enhancements: Users can input specific zoom percentages directly and access additional zoom presets ranging from 5% to 400%. - File Explorer Changes: Improvements for compatibility, performance, and reliability, including support for paths with double backslashes and quotation marks, and middle-click support for opening folders in new tabs. - Windows Update: Unification of drivers, .NET, and firmware updates with monthly quality updates, reducing required restarts to one per month. - Windows Search Enhancements: Improved handling of typos, missing letters, and partial app names, prioritizing accurate search results even with input errors.
Winsage
June 15, 2026
Microsoft has expanded the rollout of the Secure Boot 2023 certificate update to more Windows 11 and Windows 10 devices with the June 2026 Patch Tuesday update (KB5094126). This update aims to ensure that most supported consumer PCs are classified as high confidence, meaning necessary certificates are either installed or will be applied automatically. Secure Boot is a firmware security feature that verifies the software attempting to load during the startup process, blocking unauthorized software. The certificates supporting Secure Boot, issued in 2011, are expiring in stages starting June 24, 2026, prompting Microsoft to deploy replacement certificates. Most home users do not need to take manual action as the updates will occur automatically via Windows Update. Users can check their Secure Boot certificate status in the Windows Security app. A yellow warning indicates pending compatibility data, while a red alert suggests a firmware incompatibility requiring a BIOS update. Multiple reboots during the update process are normal, and a new SecureBoot folder in Windows is for staging cryptographic files. Older PCs may experience longer update times, and some may not receive updates due to firmware issues. HP users should check for BIOS updates if encountering BitLocker recovery loops. IT administrators should monitor device classifications and manually initiate updates for devices not in the high confidence category. Devices with Secure Boot disabled cannot receive updates, leaving them vulnerable. The expiration of the Microsoft Corporation KEK CA 2011 certificate on June 24 does not immediately affect device functionality, but it limits Microsoft's ability to sign new bootkit blacklist updates.
Winsage
June 12, 2026
Microsoft's Windows Insider program has released seven Insider builds across all Channels, including two builds on the Beta and Release Preview Channels and three builds for the new Experimental Channel. The updates focus on the Experimental (25H2), Beta (25H2), and Release Preview (25H2) Channels. The new 26H1 builds mainly feature elements from the 25H2 builds and are intended for new ARM-based PCs. Key features include: - A less disruptive Windows Update experience requiring only one monthly restart. - Improved Windows Search capabilities for better typo handling. - A new screen tint accessibility feature to reduce eye strain. - Quieter Widgets that do not open on hover and have a smaller memory footprint. - Magnifier tool enhancements with preset zoom increments and direct input options. - Bluetooth connectivity improvements for better compatibility with select devices. - Voice Access and Voice Typing now available in French, German, and Spanish. - Customizable right-click settings for touchpads. The Release Preview Channel is testing an optional update for Windows 11 versions 25H2 and 24H2, set for release in late June.
Search