Secure Boot is one of those foundational security features that most of us expect to “just work”. And for the most part, it does—until it doesn’t. With the upcoming Secure Boot certificate […]
Secure Boot is one of those foundational security features that most of us expect to “just work”. And for the most part, it does—until it doesn’t. With the upcoming Secure Boot certificate […]
Update! In my recent post, https://deploymentbunny.com/2026/04/07/secure-boot-2026-essential-updates-and-fixes/, I referenced the CheckSecureBoot script used to validate Secure Boot configuration during deployment. The purpose of the script is to be able to check the satus […]
I had the opportunity to present on Windows Operating System Hardening at MMS togather with Michael Niehaus , and if you attended, here is a recap of the session we did. This […]
Since I’m running Windows Insider the OS is updated regularly to a new version. I don’t remember the last time I had a issue, but yesterday it was time for the “Darn, […]
Working at a customer, we had major issues with an application. It does not handle the new “Improving the high-DPI experience in GDI based Desktop Apps”. Using the AppCompat mode by disable […]
Someone asked med a while back – Is it possible to upgrade our Windows 7,8,8.1 and unsupported Windows 10 machines to a supported version of Windows 10 without a deployment solution? ….(thinking) […]
Also known as: KB4041676 - https://support.microsoft.com/en-us/help/4041676 KB4041691 – https://support.microsoft.com/en-us/help/4041691 KB4000824 https://support.microsoft.com/en-us/help/4000824 Affected systems: This only affects systems that are managed trough WSUS and the patches was approved at the same time as […]
The issue in ADK 1703 is that you cannot mount a WIM file in MDT/ConfigMgr, due to a signing issue with the WIM Mount Driver when running a system with UEFI and […]