Skip to main content

Microsoft’s Secured Core PCs could be the most hacker-resistant laptops ever

Thanks to a new Microsoft design directive, new Windows laptops from Lenovo, Panasonic, Dell, and HP could be the most hacker-resistant yet. The directive ensures that “Secured-core PCs” come equipped with a new hardware modification which protects the underlying firmware of the system, preventing attackers from stealing sensitive information like encryption keys, and gaining root system access.

One of the most ingenious ways hackers have targeted Windows PCs in recent years has been by going after the underlying unified extensible firmware interface (UEFI) which helps PCs get started once you hit the power switch. Although software protections like Microsoft’s Secure Boot will ward off attacks against the operating system, if the UEFI is compromised, it and any other protective measures like anti-malware software can’t do a thing to stop it.

Image used with permission by copyright holder

That’s why many organizations have been advocating for a stronger root of trust, founded in protective hardware, and it seems Microsoft has been listening. The secure core will check the firmware on a system during startup to make sure that it’s legitimate and not infected. It has also protected itself using encryption, which only the device manufacturers have the decryption keys for, adding a secondary layer of anti-tamper protection to the new security system.

This isn’t entirely dissimilar to what we’ve seen other hardware developers like Apple do, with specialized chips confirming the firmware is protected. But where Apple can control all of the hardware in its products and typically utilize chips from one or two manufacturers, Microsoft’s Windows is found on devices with AMD, Intel, and ARM CPUs at the core, among others. It appears as if Microsoft has, in concordance with these manufacturers, developed a system that will work for all of them.

Microsoft confirmed to Digital Trends that the secured core solution includes hardware that is both on and off the CPU die.

In any case, however, the new Secure Core hardware configuration and sticker-clad certification will be available in high-end and business-focused devices. The first to support it, is Microsoft’s own Surface Pro X, although Microsoft has also confirmed it for new editions of the Lenovo ThinkPad X1 Yoga, ThinkPad X1 Carbon, Panasonic Toughbook 55, Dell Latitude 5300 2-in-1, and 7400 2-in-1. The HP Elite Dragonfly, Dynabook Portege X30-F, Tecra X40-F, and X50-F will also be certified with this new hardware and protective ecosystem.

Updated on October 22: Added Microsoft clarification on the location of secured core hardware.

Editors' Recommendations

Jon Martindale
Jon Martindale is the Evergreen Coordinator for Computing, overseeing a team of writers addressing all the latest how to…
The most powerful Surface laptop ever may launch later this year
The back lid of the Surface Laptop Studio.

Microsoft's Surface line has become iconic in a few different ways, but performance was never its strong suit. However, according to rumors that have been building throughout this year, we'll be getting the most powerful Surface device we've ever seen later this year.

The product in question is the Surface Laptop Studio 2, a follow-up to the debut of the design in 2021. That initial Surface Laptop Studio was already the most powerful device in the lineup as the replacement of the previous Surface Book designs. Most importantly, these are the only Surface devices to get discrete graphics, making them the best options for creatives and gamers. Of course, that device was unique for its form factor -- but performance was a big selling point too.

Read more
This critical exploit could let hackers bypass your Mac’s defenses
A hacker typing on an Apple MacBook laptop while holding a phone. Both devices show code on their screens.

Microsoft has discovered a critical exploit in macOS that could grant hackers easy access to your Mac’s most important data. Dubbed ‘Migraine,’ it shows why it’s vital to update your Mac as soon as possible.

Migraine is so damaging because it can bypass Apple’s System Integrity Protection, or SIP for short. SIP is enabled by default on modern Macs and works by sandboxing sensitive parts of the computer from outside meddling. Only processes that are signed by Apple (or those with special privileges, like Apple installers) are allowed to alter something guarded by SIP.

Read more
Qualcomm claims its laptops destroy Intel chips in AI tasks
Qualcomm super resolution demo superimposed on a Microsoft Surface Pro 9.

Qualcomm super resolution demo superimposed on a Microsoft Surface Pro 9. Image used with permission by copyright holder

Qualcomm just announced that AI code optimized to take advantage of the full capabilities of the Snapdragon 8cx Gen 3 runs some processes faster than low-power Intel chips. That will make the long-lasting Lenovo ThinkPad X13s and Microsoft Surface Pro 9 more attractive to AI enthusiasts who want to run Stable Diffusion for image generation and other AI apps locally without sacrificing portability.

Read more