shim
WoeUSB
shim | WoeUSB | |
---|---|---|
20 | 46 | |
794 | 1,965 | |
1.3% | 1.1% | |
7.0 | 0.0 | |
3 days ago | 7 months ago | |
C | Shell | |
GNU General Public License v3.0 or later | GNU General Public License v3.0 only |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
shim
- Critical bug that exists in every Linux boot loader signed in the past decade
-
Signing a UEFI module
Microsoft doesn't really sign other people's code for UEFI. They do sign shim (https://github.com/rhboot/shim) which will look at other keys the user registered with UEFI to load other components to enable you to write custom third party UEFI modules while still supporting secure boot.
-
The vendor-locking is for your own safety. Do not resist.
In this case, the distros first boot loader is shim, which is signed by Microsoft. Shim is FOSS: https://github.com/rhboot/shim
-
SBAT for rEFInd
How do I get dual boot set up and running? There doesn't seem so much documentation about this sbat chicanery as it was introduced to shim in 2021 and patched in rEFInd a bit more than a month ago, so I suppose not enough people have had this trouble yet.
-
Microsoft VS BlackLotus Malware
Secure boot still isn't "secure" at all because microsoft has signed multiple bootloaders with their own keys, which exist only to chain load a second bootloader. See https://github.com/rhboot/shim and https://blog.hansenpartnership.com/linux-foundation-secure-boot-system-released/
-
First in-the-wild UEFI bootkit bypassing UEFI Secure Boot
A new mechanism called SBAT (https://github.com/rhboot/shim/blob/main/SBAT.md) is now used to allow revocation of groups of bootloaders rather than individual hashes in order to mitigate the resource consumption
-
Ultimate guide to Pop OS secure boot with NVIDIA.
{ echo "sbat,1,SBAT Version,sbat,1,https://github.com/rhboot/shim/blob/main/SBAT.md" echo "systemd-boot,1,systemd,systemd-boot,1,https://systemd.io" } > sbat.csv
- How to add an SBAT section to grub and resign?
-
Unable to install Fedora 36 with secure boot enabled.
Yeah, that incident instigated a totally new approach to revoking bad bootloaders that everybody (including Microsoft) should be using nowadays. So I guess HP just never got the memo.
- Invalid image when trying to boot Nobara Project USB image (both Gnome and KDE)
WoeUSB
-
How to Boot ISO Files from GRUB2 Boot Loader
Windows uses some weird install process where it needs two partitions for the install media. Basically the whole installation is too big for FAT32 so IIRC the way to have it work is to split the ISO in two having the bootable part on one partition and a lot of the installation content on another.
https://github.com/WoeUSB/WoeUSB
-
Install Windows the Arch Linux Way
https://github.com/WoeUSB/WoeUSB - you give it an MS iso and where to put it on a USB stick and it will do the job using NTFS, which doesn't have snags with >4GB files.
-
Is there an alternative to this program (Rufus) to burn Linux and Windows iso images to Ubuntu/Fedora?
For flashing Windows I had luck with woeusb.
-
Pendrive in read-only after boot attempt with WoeUSB.
You want to repost your support request as issue on the WoeUSB issues github page.
- Help with reinstalling windows.
- Could i get bootkit?
- How to uninstall Ubuntu and install windows?
-
Windows Setup (both 10 and 11) refuses to recognize my NVMe SSD as an install option
instead I needed to use a tool called WoeUSB to create the drive.
-
How do I switch to windows from pop os?
Download, install and use woeusb to flash the ISO file to a thumb drive. Then boot from the thumb drive (you might have to use the BIOS boot menu to choose USB boot) and install windows onto the main storage device. You will likely have to use the Windows installer formatting tool before you can choose the installation destination.
- Pendrive USB com Instalador do Windows não inicia.
What are some alternatives?
tpm-km - yet another pack of scripts for TPM2+Luks
WoeUSB-ng - WoeUSB-ng is a simple tool that enable you to create your own usb stick windows installer from an iso image or a real DVD. This is a rewrite of original WoeUSB.
tpm-luks
Ventoy - A new bootable USB solution.
tpm2KeyUnlock - Adds an automated unlock function based on TPM policy installation
MediaCreationTool.bat - Universal MCT wrapper script for all Windows 10/11 versions from 1507 to 21H2!
tpm2-initramfs-tool - Tool used in initramfs to seal/unseal FDE key to the TPM
windows2usb - Windows 7/8/8.1/10/11 ISO to Flash Drive burning utility for Linux (MBR/GPT, BIOS/UEFI, FAT32/NTFS)
stig - TUI and CLI for the BitTorrent client Transmission
uefi-ntfs - UEFI:NTFS - Boot NTFS or exFAT partitions from UEFI
tremc - Curses interface for transmission [Moved to: https://github.com/tremc/tremc]
Rufus - The Reliable USB Formatting Utility