They Forgot What Happened Last Time: Hacking the Windows 365 Link [video]

Hacker News Top Events

Summary

A conference talk at EMF 2026 where researcher Rairii presents findings on hacking Microsoft's Windows 365 Link thin client, bypassing its locked-down 'secure-by-design' architecture including EFI Secure Boot and BitLocker.

No content available
Original Article
View Cached Full Text

Cached at: 08/04/26, 01:36 AM

# They Forgot What Happened Last Time: hacking the Windows 365 Link Source: [https://media.ccc.de/v/emf2026-93-1-they-forgot-what-happened-last-time](https://media.ccc.de/v/emf2026-93-1-they-forgot-what-happened-last-time) 1. [browse](https://media.ccc.de/b) 2. [conferences](https://media.ccc.de/b/conferences) 3. [emf](https://media.ccc.de/b/conferences/emf) 4. [2026](https://media.ccc.de/b/conferences/emf/2026) 5. event [Rairii](https://media.ccc.de/search?p=Rairii) [Stage B](https://media.ccc.de/c/emf2026/Stage%20B)[talk](https://media.ccc.de/c/emf2026/talk)Playlists:['emf2026' videos starting here](https://media.ccc.de/v/emf2026-93-1-they-forgot-what-happened-last-time/playlist)/[audio](https://media.ccc.de/v/emf2026-93-1-they-forgot-what-happened-last-time/audio)The Windows 365 Link is a thin client, running a special edition of Windows 11, that can only connect to a "Windows 365 Cloud PC" and is otherwise useless ewaste\. When it was announced, Microsoft boasted its total vendor lock\-in plan, which they described as "secure\-by\-design architecture": no admin rights, no local data, EFI Secure Boot locked on, BitLocker always enabled\. The last time EFI Secure Boot was locked on was Windows RT devices, and that caused me to personally break the Windows bootloader chain of trust, several times\. Challenge accepted\. Licensed to the public under https://creativecommons\.org/licenses/by\-sa/4\.0/ ### Download #### Audio ### Tags

Similar Articles

Microsoft BitLocker – YellowKey zero-day exploit

Hacker News Top

A security researcher released a zero-day exploit called YellowKey that bypasses Microsoft BitLocker encryption on Windows 11 and Windows Server 2022/2025, allowing full access to locked drives using a USB stick; the exploit appears to operate as a backdoor, with files disappearing after use.