Menu

Post image 1
Post image 2
1 / 2
0

Windows BitLocker and CTFMON Zero-Day Vulnerabilities Reported

DEV Community·BeyondMachines·18 days ago
#sFT0TjyE
Reading 0:00
15s threshold
Cover image for Windows BitLocker and CTFMON Zero-Day Vulnerabilities Reported

Summary

A researcher released two unpatched zero-day vulnerabilities, YellowKey and GreenPlasma, which allow attackers to bypass BitLocker encryption with physical access to the devices and escalate system privileges on Windows 11 and Server environments.

Take Action:

If you use Windows 11 or Windows Server 2022/2025, set a custom BitLocker PIN and a strong BIOS password to block unauthorized booting from USB or external media. Educate users to limit physical access to their devices until Microsoft releases official fixes.


Read the full article on BeyondMachines


This article was originally published on BeyondMachines

Read More