news.mlab.sh
2 results
vulnerability

Microsoft Releases Mitigation for YellowKey BitLocker Bypass CVE-2026-45585 Exploit

This report details a zero-day vulnerability, dubbed ‘YellowKey,’ affecting Windows 11 and Server 2025, allowing attackers to bypass BitLocker Device Encryption through a USB drive exploit. Microsoft has released a mitigation strategy involving WinRE modifications and recommending a shift to TPM+PIN authentication. The…

The Hacker News · May 20, 2026 High