If Secure Boot is preventing Windows from starting, the supported first step is to disable Secure Boot in BIOS/UEFI so the laptop can boot again.
Warning: Changing BIOS/UEFI settings can prevent the PC from starting correctly if the wrong setting is changed.
- Open the BIOS/UEFI menu:
- Restart the laptop and press the startup key shown by the manufacturer, commonly F1, F2, F12, or Esc.
- Or from Windows, hold Shift while selecting Restart, then go to Troubleshoot > Advanced Options > UEFI Firmware Settings.
- Find Secure Boot.
- It is usually under Security, Boot, or Authentication.
- Set Secure Boot to Disabled.
- Save changes and exit.
- Let the laptop restart and check whether Windows loads.
If Windows starts only when Secure Boot is disabled, try these next steps:
- In BIOS/UEFI, reset Secure Boot settings or BIOS settings to defaults.
- Restart and test again.
- If enabling Secure Boot still blocks Windows, the device may need one of these recoveries:
- Reset Secure Boot keys to factory defaults if the firmware supports it.
- If the device still will not boot, recovery may require the Secure Boot recovery utility or OEM-specific guidance.
If the laptop cannot boot after Secure Boot changes:
- Turn Secure Boot off again.
- Try to boot Windows.
- If Windows still does not start, use recovery media and reinstall Windows if needed.
If BIOS/UEFI does not show a clear Secure Boot option, or disabling/re-enabling it does not help, contact the device manufacturer for the exact steps for that laptop model.
References: