Why Microsoft would you ask? Well, for the same reason it is Microsoft who signs linux loaders for secure boot.