5 ms·
This doesn't sound bitlocker specific, sounds more like a login bypass. If you rely on TPM without PIN then it gets decrypted automatically. This should be fine
by jsmith99 4mo ago
This doesn't sound bitlocker specific, sounds more like a login bypass. If you rely on TPM without PIN then it gets decrypted automatically. This should be fine normally as attackers shouldn't be able to get past login screen. But this exploit shows a way allegedly to get a unrestricted shell in the recovery environment.
The researcher claims a way to bypass PIN too but hasn't revealed it.
- 14 4mo agoProbably since disclosure didn't result in a bounty may as well sell it to someone who would pay.