threat-intel A new extortion cocktail: office printers, small ransoms, and BitLocker Two separate incidents – one in Colombia and another in Mexico – highlight a concerning trend of attackers leveraging misconfigured systems and built-in Microsoft tools to deploy BitLocker encryption and demand ransom payments. Attackers gained initial access through vulnerabilities like internet-exposed RDP services a… Securelist · Jul 21, 2026 High COMXransomwarebitlockerrdp
threat-intel Microsoft Patches Record 622 Flaws, Including Two Zero-Days Under Active Attack Microsoft released its largest Patch Tuesday update to date, encompassing 622 security updates, with two of these fixes already being actively exploited by attackers. These vulnerabilities, affecting SharePoint Server an… The Hacker News · Jul 14, 2026 High CVE-2026-56164CVE-2026-56155CVE-2026-50661zero-dayprivilege escalationremote code execution
vulnerability Microsoft Patch Tuesday July 2026 - The AI Acopolypse is Here , (Tue, Jul 14th) Microsoft's July Patch Tuesday release includes a massive 622 vulnerabilities, with a significant number already exploited. Many of these vulnerabilities affect products like Edge and SharePoint, and a notable one – a B… SANS Internet Storm Center · Jul 14, 2026 High CVE-2026-56155CVE-2026-56164CVE-2026-50661patch tuesdayvulnerabilitymicrosoft
threat-intel Fresh ATM Crypto Software Bugs: Jackpot or Bust? A researcher, Matt Burch, discovered nine vulnerabilities in CryptoPro Secure Disk, a full-disk encryption solution used by ATM manufacturer Diebold Nixdorf. These vulnerabilities could allow attackers to bypass encrypti… Dark Reading · Jul 10, 2026 High USatmencryptionjackpotting
vulnerability Microsoft fixes BitLocker recovery bug on Windows Server 2025 Microsoft released updates (KB5094125 and KB5093998) to address a bug in Windows Server 2025 and Windows 11 that caused BitLocker recovery prompts after installing security updates. The issue stemmed from specific Group… BleepingComputer · Jun 11, 2026 Medium bitlockertpmgroup policy
vulnerability Microsoft ships largest Patch Tuesday on record, with one bug under active attack Microsoft released its largest Patch Tuesday update to date, containing 206 CVEs, driven by the increasing use of AI in vulnerability discovery. A particularly concerning vulnerability, CVE-2026-45657, is described as ‘w… The Record · Jun 10, 2026 Critical CVE-2026-45657CVE-2026-41091CVE-2026-50507UKpatch tuesdayvulnerabilityai
vulnerability New Windows Zero-Day Exploit ‘RoguePlanet’ Released A new Windows zero-day exploit, dubbed RoguePlanet, has been released by the threat actor Nightmare Eclipse, targeting Microsoft Defender and potentially leading to local privilege escalation and BitLocker bypass. This f… SecurityWeek · Jun 10, 2026 High CVE-2026-45586CVE-2026-50507CVE-2026-41091USzero-daylocal privilege escalationbitlocker
vulnerability Microsoft Patches Record 206 Flaws, Including Three Zero-Days and Critical RCE Bugs Microsoft released a significant security update addressing 206 vulnerabilities across its software portfolio, including multiple critical Remote Code Execution (RCE) flaws and several zero-days. The update focuses on pa… The Hacker News · Jun 10, 2026 Critical CVE-2025-10263CVE-2026-8863CVE-2026-45657USzero-dayrcebitlocker
threat-intel Microsoft releases Windows 10 KB5094127 extended security update Microsoft released extended security update KB5094127 for Windows 10, addressing 200 vulnerabilities, including several zero-day flaws, as part of its ongoing Patch Tuesday program. The update also incorporates improveme… BleepingComputer · Jun 9, 2026 High security updatezero-daybitlocker
vulnerability Microsoft Threatening Security Researcher A security researcher known as "Nightmare Eclipse" has been publicly disclosing a series of critical vulnerabilities within Microsoft Windows, including a breach of BitLocker encryption. In response, Microsoft has issued… Schneier on Security · Jun 2, 2026 High securityexploitbitlocker
vulnerability Microsoft Releases Mitigation for YellowKey BitLocker Bypass CVE-2026-45585 Exploit This report details a zero-day vulnerability, dubbed ‘YellowKey,’ affecting Windows 11 and Server 2025, allowing attackers to bypass BitLocker Device Encryption through a USB drive exploit. Microsoft has released a mitig… The Hacker News · May 20, 2026 High CVE-2026-45585USbitlockerwinrezero-day
vulnerability Microsoft shares mitigation for YellowKey Windows zero-day Microsoft has released mitigation steps for a newly disclosed Windows zero-day vulnerability, dubbed YellowKey, which allows unauthorized access to BitLocker-protected drives. The vulnerability was initially revealed by… BleepingComputer · May 20, 2026 High CVE-2026-33825CVE-2026-45585zero-daybitlockerwinre
threat-intel Windows Zero-Day Barrage Continues After Patch Tuesday A security researcher known as "Nightmare Eclipse" has disclosed six Windows zero-day vulnerabilities over the past six weeks, some of which are actively being exploited. These vulnerabilities, including YellowKey, Green… Dark Reading · May 19, 2026 High CVE-2020-17103CVE-2026-33825USzero-daybitlockerprivilege escalation
vulnerability Zero-Day Exploit Against Windows BitLocker A new zero-day exploit, dubbed YellowKey, has been discovered targeting Windows BitLocker encryption. The vulnerability allows attackers to bypass BitLocker's security measures with physical access to the affected device… Schneier on Security · May 18, 2026 High zero-dayencryptionbitlocker