On older Zen CPUs, you can supposedly just abuse a handy AMD-signed header saying that none of the rest of the data has to be signed in order to execute...