This website uses cookies to ensure you get the best experience. Click here to learn more.
Zero-day exploit completely defeats default Windows 11 BitLocker protections

It’s not entirely clear how the exploit works. Microsoft says it’s investigating.



A zero-day exploit circulating online allows people with physical access to a Windows 11 system to bypass default BitLocker protections and gain complete access to an encrypted drive within seconds.


The exploit, named YellowKey, was published earlier this week by a researcher who goes by the alias Nightmare-Eclipse. It reliably bypasses default Windows 11 deployments of BitLocker, the full-volume encryption protection Microsoft provides to make disk contents off-limits to anyone without the decryption key, which is stored in a secured piece of hardware known as a trusted platform module (TPM). BitLocker is a mandatory protection for many organizations, including those that contract with governments.


Read More...


Courtesy of Ars Technica

Article Author: Dan Goodin