PulseAugur
LIVE 23:57:15
tool · [1 source] ·
2
tool

Zero-day exploits bypass BitLocker encryption and escalate Windows privileges

A security researcher known as Chaotic Eclipse has disclosed two new zero-day exploits targeting Microsoft Windows. The first, dubbed "YellowKey," allows unauthorized access to BitLocker-encrypted drives by simply copying specific files to a USB stick and rebooting into the Windows Recovery Environment. This exploit reportedly bypasses BitLocker's security measures, even with TPM and PIN configurations, and its files self-delete after execution, raising concerns about a potential backdoor. The second exploit, "GreenPlasma," allegedly provides local privilege escalation to system-level access by manipulating system processes. AI

Summary written by gemini-2.5-flash-lite from 1 source. How we write summaries →

IMPACT Security vulnerabilities in widely used operating systems and encryption tools can impact enterprise AI deployments and data security.

RANK_REASON Disclosure of security vulnerabilities in a widely used product.

Read on Tom's Hardware →

Zero-day exploits bypass BitLocker encryption and escalate Windows privileges

COVERAGE [1]

  1. Tom's Hardware TIER_1 · Bruno Ferreira ·

    Microsoft BitLocker-protected drives can now be opened with just some files on a USB stick — YellowKey zero-day exploit demonstrates an apparent backdoor

    Microsoft Bitlocker-protected drives can be opened with just some files on a stick