Description
Updates and inspects the UEFI Secure Boot DBX, the forbidden-signature database used to block known vulnerable or untrusted boot components. It helps systems receive revocation updates that improve boot security.
This is a low-level firmware security tool. Use it only when you understand the update path, because incorrect Secure Boot database changes can affect whether operating systems or bootloaders start.