Security researcher says Microsoft built a Bitlocker backdoor, releases exploit
Summary
A security researcher claims Microsoft built a backdoor into BitLocker and releases an exploit, raising concerns about encryption integrity.
Similar Articles
Microsoft BitLocker – YellowKey zero-day exploit
A security researcher released a zero-day exploit called YellowKey that bypasses Microsoft BitLocker encryption on Windows 11 and Windows Server 2022/2025, allowing full access to locked drives using a USB stick; the exploit appears to operate as a backdoor, with files disappearing after use.
Microsoft 0-day feud escalates as researcher threatens another exploit dump
A disgruntled security researcher known as Nightmare Eclipse has escalated a feud with Microsoft by threatening to dump more Windows zero-day exploits, after already releasing six. Microsoft has responded with a blog post and legal threats.
Mystery Microsoft bug leaker keeps the zero-days coming
An anonymous researcher released two Microsoft zero-day exploits, YellowKey (BitLocker bypass) and GreenPlasma (privilege escalation), after Patch Tuesday, posing serious security risks for organizations.
Locked in heated rivalry with researcher, Microsoft fixes 0-day they disclosed
Microsoft fixed a 0-day vulnerability disclosed by researcher Nightmare Eclipse amid a heated rivalry, alongside other vulnerabilities like MiniPlasma, YellowKey, and others. The researcher published exploit code for a new Windows Defender vulnerability.
Microsoft Threatened Legal Action Against a Security Researcher. The Security Community Pushed Back.
A security researcher published six unpatched Windows zero-day vulnerabilities, including working exploit code, without Microsoft's knowledge. Microsoft threatened legal action and criminal referrals, drawing widespread criticism from the cybersecurity community over its handling of the situation.