Menu

Post image 1
Post image 2
Post image 3
Post image 4
1 / 4
0

A security researcher says Microsoft secretly built a backdoor into BitLocker, releases an exploit to prove it

TechSpot·Alfonso Maruccia·18 days ago
#LKlMrYWg
Reading 0:00
15s threshold

Serving tech enthusiasts for over 25 years. TechSpot means tech analysis and advice you can trust . The Epitome of WTF: A researcher known as "Nightmare-Eclipse" recently released YellowKey, a security vulnerability that allegedly enables a full bypass of BitLocker's full-volume encryption. The researcher described YellowKey as one of the most "insane" flaws they have ever encountered and has also accused Microsoft of potentially embedding a legitimate backdoor in BitLocker's data protection system. According to the researcher, YellowKey appears unusual for a previously unknown security bug. Nightmare-Eclipse explained that the flaw can be reproduced by copying an attached "FsTx" folder to a USB drive formatted with a Windows-compatible file system such as NTFS, FAT32, or exFAT. The vulnerability may also work without a USB drive if the FsTx files are copied to the Windows EFI partition and the encrypted disk is temporarily disconnected from the system.…

Continue reading — create a free account

Join HashtagPLUS to read full articles, follow hashtags, vote, and join the conversation.

Read More