vulnerability Microsoft fixes BitLocker recovery bug on Windows Server 2025 Microsoft released updates (KB5094125 and KB5093998) to address a bug in Windows Server 2025 and Windows 11 that caused BitLocker recovery prompts after installing security updates. The issue stemmed from specific Group Policy configurations related to TPM validation and PCR7, leading to unexpected recovery key request… BleepingComputer · Jun 11, 2026 Medium bitlockertpmgroup policy
threat-intel Google Chrome adds session cookie theft protection for all users Google has launched a new security feature, Device Bound Session Credentials (DBSC), for Chrome to protect users from session cookie theft and subsequent account takeovers. This feature cryptographically links session co… BleepingComputer · May 29, 2026 High session cookiesaccount takeovercryptography
vulnerability Zero-Day Exploit Against Windows BitLocker A new zero-day exploit, dubbed YellowKey, has been discovered targeting Windows BitLocker encryption. The vulnerability allows attackers to bypass BitLocker's security measures with physical access to the affected device… Schneier on Security · May 18, 2026 High zero-dayencryptionbitlocker