I'm getting a "Secure Boot Violation – Invalid Signature Detected" message. I can start the laptop if I disable Secure Boot, and I've also tried the recommended USB-based fix. The fix works temporarily, but after I unplug the laptop and turn it on again, the problem returns as if the BIOS forgot the changes. Should I try restoring Windows to an earlier date, reinstalling Windows after backing up my files, or performing a factory reset? I also heard that a failed CMOS/BIOS backup battery can cause settings and fixes to be lost. Could that explain the issue, especially if the BIOS date and time are wrong?
2 Answers
Try the official Secure Boot repair steps carefully. They can resolve the invalid-signature message, but if the same fix is undone every time the laptop loses power, the issue may be with the firmware retaining its settings rather than with Windows itself.
Check the BIOS date and time the next time the error appears. If they reset or are far from the correct date, that strongly points to a failed CMOS backup battery. Some laptops use a small internal battery, while others rely partly on the main battery. Have the battery and BIOS settings checked before reinstalling or factory-resetting Windows.
The BIOS date was incorrect when the problem came back, so I’m going to have the CMOS battery checked. That seems more likely than reinstalling Windows.

I tried those steps, and they work until I unplug the laptop. After that, the error returns and the fix appears to be forgotten.