Switch language한국어
Back to the list

Zero-day exploit completely defeats default Windows 11 BitLocker protections

TL;DR AI

Key summary

2 min read
  1. A newly disclosed zero-day, YellowKey, can bypass Windows 11’s default BitLocker protection with only physical access.

  2. The exploit abuses a custom FsTx folder and Windows recovery behavior to reach a command prompt on the encrypted drive without the recovery key.

  3. This weakens a core disk-encryption safeguard used by many organizations, including government contractors.

  4. Researchers Kevin Beaumont and Will Dormann highlighted the issue, which involves TPM, Windows Recovery, and Transactional NTFS.

Read the original