This worrying Microsoft BitLocker backdoor can grant full access to a locked drive — and all you need is a USB stick



  • Chaotic Eclipse leaks two new Windows flaws: YellowKey (BitLocker bypass) and GreenPlasma (privilege escalation)
  • YellowKey abuses WinRE to bypass BitLocker; verified by Kevin Beaumont, though mitigations are debated
  • GreenPlasma exploits CTFMON services for SYSTEM access; follows earlier leaks RedSun, UnDefend, and BlueHammer (later patched as CVE‑2026‑33825)

Chaotic Eclipse, the security researcher who recently leaked three unpatched Windows vulnerabilities because they weren’t happy with how Microsoft handles bug reports, has now leaked two more flaws, together with proof-of-concepts (PoC) showing how they could be exploited.

In their latest release, Chaotic Eclipse disclosed flaws named YellowKey and GreenPlasma. The former is a BitLocker bypass, while the latter is a privilege escalation vulnerability.

https://cdn.mos.cms.futurecdn.net/vLoSnmu8jSgXsvCsvQ36XM-2560-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

Leave a reply

Please enter your comment!
Please enter your name here

spot_imgspot_img