I was trying to play Call of Duty when my PC reported that Secure Boot was disabled. After following advice to reset the Secure Boot keys, I started getting a red "Secure Boot Violation" message about unauthorized changes and could no longer boot into the Windows UEFI settings. The computer still starts if I select "Other OS," but that option doesn't let me enable Secure Boot. I'm using an ASUS TUF Gaming motherboard with an older BIOS. Secure Boot worked previously, but it stopped working after the key reset. What's the safest way to restore it?
1 Answer
The BIOS is probably too old for the newer Secure Boot keys. Update the motherboard BIOS first, then enter the firmware settings, restore or install the default Secure Boot keys, and enable Secure Boot again. The built-in EZ Flash utility should work, but make sure you use the exact BIOS file for your motherboard model and avoid interrupting power during the update.

I was nervous about using EZ Flash because the update kept freezing, but updating the BIOS and then resetting the Secure Boot keys fixed everything. The older BIOS from 2020 was the problem.