They Forgot What Happened Last Time: Hacking the Windows 365 Link

They Forgot What Happened Last Time: Hacking the Windows 365 Link [video]

They Forgot What Happened Last Time: Hacking the Windows 365 Link

At EMF 2026, Rairii takes on Microsoft's 'secure-by-design' Windows 365 Link, a thin client locked down with no admin rights, no local data, and EFI Secure Boot always on. Drawing on past exploits against Windows RT, they demonstrate breaking the bootloader chain of trust, exposing flaws in the vendor lock-in strategy.

The last time EFI Secure Boot was locked on was Windows RT devices, and that caused me to personally break the Windows bootloader chain of trust, several times.

More from this day

2026-08-04