NCSC-2026-0165: Vulnerability Found in Microsoft Windows BitLocker (YellowKey) (advisories.ncsc.nl)
0xBASE INTEL BRIEF
- Local attackers can bypass BitLocker encryption via the Windows recovery environment.
- The vulnerability tracked as NCSC-2026-0165 is a security feature bypass, not a cryptographic weakness.
- A proof of concept demonstrating the exploit is available.
"The Dutch NCSC has published details on a vulnerability in Windows BitLocker that allows local attackers to access encrypted data via a security feature bypass in the recovery environment, known as YellowKey. A proof of concept is available. The vulnerability does not affect the encryption itself but the recovery environment."
no comments yet.