Hello Samual, sorry to hear about the crash!
To recover the system, boot into a WinPE environment or recovery drive to access the command line and disable Virtualization-Based Security at the boot level.
First, run bcdedit /set hypervisorlaunchtype off and bcdedit /set vsmlaunchtype off to prevent the Windows bootloader from initializing VBS on unsupported hardware.
Next, clear the persistent Credential Guard EFI variables by running reg load HKLM\OFFLINE C:\Windows\System32\config\SYSTEM and deleting the key HKLM\OFFLINE\ControlSet001\Control\DeviceGuard\Scenarios\CredentialGuard. If the NVRAM variables persist at the firmware level, use the UEFI Shell command dmpstore -d -guid 77004374-4276-4ea0-a151-6f0820f147d1 to purge all Guard-related flags.
Once the machine reboots successfully into Windows, temporarily move its computer object into an Active Directory OU with Group Policy inheritance blocked so the policy does not immediately re-apply.
Hope the guideline is helpful to you. Let me know how it works after applying it, and if you find my response helpful to you, please give it a thumps-up, I would really appreciate it :)
XN.