• Fwd: MOK keys on my dell XPS 15

    From Juan Jos‚ de Anda Guti‚rrez@3:633/10 to All on Sunday, February 15, 2026 23:30:01
    ---------- Forwarded message ---------
    From: Juan Jos‚ de Anda Guti‚rrez <juanjosedag@gmail.com>
    Date: Sun, Feb 15, 2026, 1:59?PM
    Subject: MOK keys on my dell XPS 15
    To: <debian-user@lists.debian.org>, Dell Product Security Incident Response Team <secure@dell.com>, <tips@nytimes.com>, <tips@reuters.com>

    To whom it might concern,
    I am writing to inquire about some keys I discovered on my Dell XPS 13
    (Asset Tag: 5JJCRF4) while running a MOK (Machine Owner Key) management command.
    The device is currently running ParrotOS with the latest firmware
    installed. Could you please clarify if seeing these specific keys is normal
    for this configuration?
    https://pastebin.com/WzatJyDD
    Compare with
    https://termbin.com/kkqe

    Thank you for your assistance.
    Best regards,
    Juan Jos‚ de Anda Guti‚rrez

    See keys:
    [key 1]
    Owner: 605dab50-e046-4300-abb6-3dd810dd8b23
    SHA1 Fingerprint:
    53:61:0c:f8:1f:bd:7e:0c:eb:67:91:3c:9e:f3:e7:94:a9:63:3e:cb
    Certificate:
    Data:
    Version: 3 (0x2)
    Serial Number:
    ed:54:a1:d5:af:87:48:94:8d:9f:89:32:ee:9c:7c:34
    Signature Algorithm: sha256WithRSAEncryption
    Issuer: CN=Debian Secure Boot CA
    Validity
    Not Before: Aug 16 18:09:18 2016 GMT
    Not After : Aug 9 18:09:18 2046 GMT
    Subject: CN=Debian Secure Boot CA
    Subject Public Key Info:
    Public Key Algorithm: rsaEncryption
    Public-Key: (2048 bit)
    Modulus:
    00:9d:95:d4:8b:9b:da:10:ac:2e:ca:82:37:c1:a4:
    cb:4a:c3:1b:42:93:c2:7a:29:d3:6e:dd:64:af:80:
    af:ea:66:a2:1b:61:9c:83:0c:c5:6b:b9:35:25:ff:
    c5:fb:e8:29:43:de:ce:4b:3d:c6:12:4d:b1:ef:26:
    43:95:68:cd:04:11:fe:c2:24:9b:de:14:d8:86:51:
    e8:38:43:bd:b1:9a:15:e5:08:6b:f8:54:50:8b:b3:
    4b:5f:fc:14:e4:35:50:7c:0b:b1:e2:03:84:a8:36:
    48:e4:80:e8:ea:9f:fa:bf:c5:18:7b:5e:ce:1c:be:
    2c:80:78:49:35:15:c0:21:cf:ef:66:d5:8a:96:08:
    2b:66:2f:48:17:b1:e7:ec:82:8f:07:e6:ca:e0:5f:
    71:24:39:50:0a:8e:d1:72:28:50:a5:9d:21:f4:e3:
    61:ba:09:03:66:c8:df:4e:26:36:0b:15:0f:63:1f:
    2b:af:ab:c4:28:a2:56:64:85:8d:a6:55:41:ae:3c:
    88:95:dd:d0:6d:d9:29:db:d8:c4:68:b5:fc:f4:57:
    89:6b:14:db:e0:ef:ee:40:0d:62:1f:ea:58:d4:a3:
    d8:ba:03:a6:97:2e:c5:6b:13:a4:91:77:a6:b5:ad:
    23:a7:eb:0a:49:14:46:7c:76:e9:9e:32:b4:89:af:
    57:79
    Exponent: 65537 (0x10001)
    X509v3 extensions:
    Authority Information Access:
    CA Issuers - URI:https://dsa.debian.org/secure-boot-ca
    X509v3 Authority Key Identifier:
    6C:CE:CE:7E:4C:6C:0D:1F:61:49:F3:DD:27:DF:CC:5C:BB:41:9E:A1
    Netscape Cert Type: critical
    SSL Client, SSL Server, S/MIME, Object Signing, SSL CA,
    S/MIME CA, Object Signing CA
    X509v3 Extended Key Usage:
    Code Signing
    X509v3 Key Usage: critical
    Digital Signature, Certificate Sign, CRL Sign
    X509v3 Basic Constraints: critical
    CA:TRUE
    X509v3 Subject Key Identifier:
    6C:CE:CE:7E:4C:6C:0D:1F:61:49:F3:DD:27:DF:CC:5C:BB:41:9E:A1
    Signature Algorithm: sha256WithRSAEncryption
    Signature Value:
    77:96:3e:47:c9:ce:09:cf:8b:89:ce:59:ed:26:0e:26:0b:b9:
    ad:a9:2b:bd:a1:eb:88:79:02:ff:31:de:fe:f5:6a:07:ef:61:
    13:11:70:1e:bf:9c:4e:66:6c:e1:62:12:97:01:57:65:47:dd:
    4a:c6:f7:f4:de:a8:f1:13:62:cc:83:57:ac:3c:a6:91:15:af:
    55:26:72:69:2e:14:cd:dd:4d:b3:d1:60:24:2d:32:4f:19:6c:
    11:5e:f2:a3:f2:a1:5f:62:0f:30:ae:ad:f1:48:66:64:7d:36:
    44:0d:06:34:3d:2e:af:8e:9d:c3:ad:c2:91:d8:37:e0:ee:7a:
    5f:82:3b:67:8e:00:8a:c4:a4:df:35:16:c2:72:2b:4c:51:d7:
    93:93:9e:ba:08:0d:59:97:f2:e2:29:a0:44:4d:ea:ee:f8:3e:
    02:60:ca:15:cf:4e:9a:25:91:84:3f:b7:5a:c7:ee:bc:6b:80:
    a3:d9:fd:b2:6d:7a:1e:63:14:eb:ef:f1:b0:40:25:d5:e8:0e:
    81:eb:6b:f7:cb:ff:e5:21:00:22:2c:2e:9a:35:60:12:4b:5b:
    5f:38:46:84:0c:06:9c:cf:72:93:62:18:ee:5c:98:d6:b3:7d:
    06:25:39:95:df:4e:60:76:b0:06:7b:08:b0:6e:e3:64:9f:21:
    56:ad:39:0f
    [key 2]
    Owner: 605dab50-e046-4300-abb6-3dd810dd8b23
    SHA1 Fingerprint:
    68:44:7c:fc:17:0c:7b:58:ae:ef:e9:e0:ff:22:5a:df:99:9f:94:88
    Certificate:
    Data:
    Version: 3 (0x2)
    Serial Number:
    5d:ff:52:3f:97:dc:08:a6:9f:61:bb:8e:e0:3d:6f:fb:c4:e4:cb:c9
    Signature Algorithm: sha256WithRSAEncryption
    Issuer: O=secureblue, CN=secureblue secureboot key/emailAddress= secureblueadmin@proton.me
    Validity
    Not Before: Mar 26 00:28:10 2025 GMT
    Not After : Mar 2 00:28:10 2125 GMT
    Subject: O=secureblue, CN=secureblue secureboot key/emailAddress= secureblueadmin@proton.me
    Subject Public Key Info:
    Public Key Algorithm: rsaEncryption
    Public-Key: (4096 bit)
    Modulus:
    00:bf:a0:5e:48:fe:f7:fa:d1:22:b7:2f:f6:4b:ce:
    bd:07:02:02:fe:ac:df:ee:a8:12:ae:ed:11:77:32:
    d7:94:91:8c:88:86:3a:39:25:05:8b:cd:6c:ff:90:
    b7:3e:fb:5b:a6:fb:b3:a4:96:e8:09:44:d3:5e:fd:
    29:60:f5:15:90:92:12:cc:1f:c1:b0:23:d4:2c:22:
    bb:91:0c:ea:f4:a9:2e:55:6a:13:87:70:67:1d:ac:
    86:0f:a5:dd:af:94:c6:c7:ac:7b:38:fc:bd:e4:b8:
    18:62:57:22:67:6c:aa:a5:96:c3:9e:75:db:34:65:
    d4:3b:2d:8f:53:ef:9e:c5:6b:1b:ff:3f:f9:96:b0:
    47:4f:40:ba:53:91:56:68:54:e0:bd:d7:c0:d8:95:
    9b:9a:58:95:aa:63:4a:a7:09:65:32:f0:63:d5:1c:
    f7:8c:66:e9:d9:b6:d9:a9:34:19:34:45:77:f0:fc:
    b8:0c:a7:cb:60:8a:f8:93:3f:89:60:8e:b1:e3:b7:
    46:99:64:3c:db:26:79:10:be:a1:ad:bd:ce:10:a0:
    36:75:11:cd:d3:bb:2a:18:ba:43:ed:b8:4d:34:5e:
    71:4e:90:5a:18:41:4c:73:7c:42:02:64:21:cb:57:
    e1:98:74:ba:4b:57:17:30:cd:1f:6c:1b:9d:e2:57:
    c6:24:aa:c5:66:25:f0:bf:d3:b7:2a:4e:18:b4:20:
    b8:7a:3f:b3:e4:78:5b:77:27:c2:8c:92:29:4e:78:
    3a:d5:f7:a0:b2:dd:45:8f:12:4b:df:69:0b:63:c4:
    09:d4:d4:95:89:46:fd:89:15:fd:96:e9:1f:a3:21:
    e5:cb:93:ce:1c:33:49:b4:04:60:f8:bc:d0:88:ab:
    f7:e7:9b:b1:0e:52:d1:e1:d6:1f:64:6d:9e:c8:de:
    cd:df:2c:67:ce:01:4d:9c:ec:14:ba:63:a6:3b:9a:
    91:a6:15:4e:24:c6:f3:73:27:68:a7:a2:af:af:10:
    75:0b:67:c5:b7:b7:a2:61:cc:32:b8:e3:a0:13:ca:
    bf:4d:b9:c2:1f:04:5a:66:4c:a4:29:04:e2:3d:1c:
    2e:7d:73:39:86:11:34:8f:53:6f:92:13:07:cd:f0:
    11:53:96:87:4b:79:af:47:0e:bf:42:ab:9b:7f:2f:
    ad:c3:6f:5a:98:79:b3:81:75:ab:cc:d1:0f:b7:58:
    66:1a:36:98:6d:3e:5c:a9:85:b0:ea:13:97:8f:e3:
    64:d7:cf:73:7f:f7:20:ee:b2:3e:ef:cc:47:e1:39:
    ad:5e:79:e1:c0:2b:e9:6b:4e:da:a5:5a:9b:bb:e2:
    e7:c1:c3:86:16:75:26:7a:81:a7:3c:4c:36:9c:8e:
    a6:a0:bf
    Exponent: 65537 (0x10001)
    X509v3 extensions:
    X509v3 Basic Constraints: critical
    CA:FALSE
    X509v3 Key Usage:
    Digital Signature
    X509v3 Subject Key Identifier:
    50:02:29:0B:1E:77:BE:75:F7:56:9D:2F:C1:CC:B1:71:62:F2:80:E1
    Signature Algorithm: sha256WithRSAEncryption
    Signature Value:
    16:4b:9a:d8:c0:15:e8:82:dd:d7:fa:1a:76:ae:26:6b:8e:18:
    01:3a:9f:6c:9c:b3:7a:57:64:18:8b:cf:9f:46:b7:ca:b3:20:
    dc:27:f1:c0:42:c2:ff:af:e6:8e:e6:36:d9:a9:fd:3e:d5:6b:
    f9:6e:2d:31:92:8c:70:18:81:9d:0d:99:7f:50:df:e2:0e:98:
    8b:53:e2:cb:f5:98:4f:48:ba:cc:46:b8:34:27:e6:82:ad:3b:
    7f:ce:29:f8:fc:48:27:c7:a3:17:04:fd:8a:07:83:86:9d:2c:
    bc:03:81:44:7d:d2:2e:78:6b:cd:4c:ba:4f:91:4f:00:ec:49:
    c3:b0:02:b1:eb:3c:bd:a2:c7:76:53:65:fe:1b:ee:f6:af:b9:
    02:15:cf:b3:6c:99:ce:c3:53:da:a1:b7:f0:c4:5a:8f:63:ba:
    92:f0:7a:90:d5:68:d2:70:a9:da:9d:3c:31:30:49:13:ba:9d:
    87:e4:17:70:d8:85:6d:52:ed:75:58:b2:c7:94:cc:d7:8d:76:
    16:bd:5d:1d:ec:7b:8f:f3:f6:cf:32:f5:19:4b:c9:78:fa:1a:
    ec:a9:3e:13:1d:4f:de:1e:6d:c6:0b:b9:fd:f5:1f:9f:34:9e:
    ed:55:54:d6:ce:3c:83:8c:13:62:66:53:49:c4:d6:94:6c:be:
    d7:22:7d:70:81:35:f6:54:75:c0:7d:a9:3f:6b:07:3a:b8:cd:
    d9:3f:d1:4c:7e:03:75:0d:55:d8:05:fb:26:fb:21:e7:c8:90:
    78:2e:2d:61:d6:ab:a2:66:78:2f:b5:43:ae:9b:37:e8:d3:03:
    35:5f:f4:01:b0:1b:78:89:54:d5:74:67:ca:b0:ff:fa:c4:ed:
    4b:00:a0:ff:cf:1e:f1:5b:6d:09:64:f7:80:11:f3:9a:e7:3f:
    b2:aa:7c:04:1e:cb:3d:6e:a0:54:5d:31:96:a8:96:0a:77:59:
    8b:61:cd:5b:3e:82:b9:26:25:f3:b2:b6:fd:56:56:a2:92:0c:
    75:98:e0:eb:c0:e9:f4:bd:3b:3e:4c:c4:ba:fa:01:00:bf:8a:
    4d:54:7a:0e:e0:a9:4a:80:49:4e:63:1f:51:bd:cd:6e:7e:c7:
    c6:ce:cc:b8:81:e6:10:ec:85:12:95:b9:e9:97:63:22:9a:6b:
    eb:c4:9c:71:5e:25:6e:14:53:22:76:d8:22:95:e7:31:98:63:
    3d:c9:b9:e8:97:6b:e8:6e:58:b7:57:7d:aa:57:f4:2a:72:c2:
    3c:07:ed:59:f9:7a:cb:52:78:dc:7e:31:64:ff:04:0d:f2:f5:
    79:33:7f:db:f7:92:62:19:42:c9:ee:62:01:19:ae:bb:58:c2:
    28:f2:fc:99:fd:d8:11:ef


    --- PyGate Linux v1.5.11
    * Origin: Dragon's Lair, PyGate NNTP<>Fido Gate (3:633/10)
  • From tomas@3:633/10 to All on Monday, February 16, 2026 07:40:01
    On Sun, Feb 15, 2026 at 02:09:05PM -0800, Juan Jos‚ de Anda Guti‚rrez wrote:
    ---------- Forwarded message ---------
    From: Juan Jos‚ de Anda Guti‚rrez <juanjosedag@gmail.com>
    Date: Sun, Feb 15, 2026, 1:59?PM
    Subject: MOK keys on my dell XPS 15
    To: <debian-user@lists.debian.org>, Dell Product Security Incident Response Team <secure@dell.com>, <tips@nytimes.com>, <tips@reuters.com>


    To whom it might concern,

    I am writing to inquire about some keys I discovered on my Dell XPS 13
    (Asset Tag: 5JJCRF4) while running a MOK (Machine Owner Key) management command.

    The device is currently running ParrotOS with the latest firmware
    installed. Could you please clarify if seeing these specific keys is normal for this configuration?
    Hi, Juan Jos‚
    while ParrotOS is based on Debian, it may be heavily customized. So you probably have better chances to get meaningful answers on their sites:
    https://parrotsec.org/
    Cheers
    --
    tom s


    --- PyGate Linux v1.5.11
    * Origin: Dragon's Lair, PyGate NNTP<>Fido Gate (3:633/10)