I'm not sure any of this is possible nowadays, I'm assuming a modified BIOS/UEFI image would be rejected due to missing some vendor signature…