PowerShell + DISM tool that builds a debloated Windows 11 ISO with TPM and Secure Boot bypass. Works on the latest Windows 11 ISOs. Open source tiny11 alternative.
-
Updated
Sep 8, 2026 - PowerShell
PowerShell + DISM tool that builds a debloated Windows 11 ISO with TPM and Secure Boot bypass. Works on the latest Windows 11 ISOs. Open source tiny11 alternative.
CVE-2026-79298 - Incomplete remediation of UEFI Secure Boot bypass in Howyar SysReturn. The IA-32 boot path (BOOTia32.efi) was never patched after CVE-2024-7344, shipping the same revoked custom PE loader until July 2026.
Post CVE-2024-7344 analysis of Howyar SysReturn NetCopy - reverse engineering notes, vulnerable binaries, vendor correspondence, and proof-of-concept tooling for CVE-2026-79298 (IA-32 Secure Boot bypass via the RxPE custom PE loader in BOOTia32.efi).
CVE-2022-34303 - Secure Boot bypass via CryptoPro Secure Disk signed UEFI Shell (Shell_Full.efi) - BYOVUA technique exploiting mm command for gSecurity2 corruption to load unsigned UEFI applications.
CVE-2022-34302 - Secure Boot bypass via New Horizon Datasys signed bootloader (shdloader.efi) - BYOVUA technique exploiting built-in custom PE/COFF loader to load unsigned UEFI applications without signature verification.
CVE-2022-34301 - Secure Boot bypass via Eurosoft signed UEFI Shell (esdiags.efi) - BYOVUA technique exploiting mm command for gSecurity2 corruption to load unsigned UEFI applications.
To associate your repository with the secure-boot-bypass topic, visit your repo's landing page and select "manage topics."