Make sure you've updated before the deadline.
Microsoft is taking its time with the boot certificate rollout, but you don't have to. Activate the latest UEFI CA 2023 right now.
In June 2025, Microsoft announced that, in June 2026, it would begin deprecating Secure Boot certificates of Windows systems from 2011, which were superseded by their 2023 counterparts.
TL;DR: Secure Boot certificates in Windows 10 and 11 will expire by June 2026, risking system security and compatibility. Microsoft is issuing new certificates through updates and OEM firmware ...
Updated firmware trust chains strengthen rootkit protection and zero-trust infrastructure security.
The February Windows update preview is extensive. It includes new Secure Boot certificates and app and settings backups.