As compared with
- Support for verified boot (UEFI Secure Boot) is enabled for the amd64 architecture. To ensure the operation of Secure Boot, the Shim bootloader is used, certified by a digital signature from Microsoft (shim-signed), in combination with the certification of the kernel and the grub bootloader (grub-efi-amd64-signed) with the project's own certificate (shim acts as a layer for the distribution kit to use its own keys). Unlike previous builds, a certified working certificate was used, which can be used without manipulating the addition of a test certificate;
- Improved handling of media sets, including better support for building Debian Edu;
- Added support for Hedo MobiLine braille displays;
- cryptsetup switched to the LUKS2 disk encryption format (previously used LUKS);
- Updated boot screen and theme (futureprototype);
- Improvements have been made to ensure repeatable builds;
- Added dark theme for submenu and grub (theme=dark). Added hotkey 'd' to enable;
- Stopped passing the BOOTIF kernel parameter for already installed systems;
- Added the ability to use several consoles at the same time during the installation process;
- For armhf/efi, GPT partitions are enabled by default;
- Added images for Novena and Banana Pi M2 Berry boards (armhf);
- Added support for Rock64, Banana Pi M2 Berry, Pine A64 LTS, Olimex A64 Teres-I, Raspberry Pi 1, Pi Zero and Pi 3 boards
- The main modules for working in paravirtualization mode have been moved from the {hyperv,virtio}-modules sets to the kernel-image module. Drivers from {hyperv,virtio}-modules moved to {fb,input,nic,scsi}-modules.
Source: opennet.ru