I recently learned that EFI shims are also vulnerable. Is Coreboot the way forward for system security?
One thing I do is a wallet.dat honeypot with (now) ~$1700 of bitcoin. Any movement essentially shuts down my home network from external access. At worst, it's a justifiable tax deduction, not capital gains :)