Microsoft has revealed a serious flaw in Windows BitLocker, known as CVE-2026-45585. The flaw was made public on May 19, 2026. No one has confirmed it is being used, but Microsoft says it is “Exploitation More Likely,” to be exploited, so quick action is needed.
The flaw is known as a Security Feature Bypass and has a high seriousness level of Important. Security audit services
By infosecbulletin
/ Wednesday , June 17 2026
A vast cyber spying operation called “FortiBleed” has quietly compromised more than 73,932 different Fortinet firewall URLs in 194 countries....
Read More
By infosecbulletin
/ Wednesday , June 17 2026
A new Android banking trojan called Rokarolla is hitting 217 banking and cryptocurrency apps with a wide range of 137...
Read More
By infosecbulletin
/ Tuesday , June 16 2026
Attackers are using Microsoft’s OAuth 2.0 Device Authorization Grant (device code) flow in a campaign to take control of Microsoft...
Read More
By infosecbulletin
/ Tuesday , June 16 2026
Cisco on Monday told customers about a new SD-WAN product flaw used in attacks. The flaw, called CVE-2026-20262, is a...
Read More
By infosecbulletin
/ Tuesday , June 16 2026
Every American data center story these days follows almost the same pattern. Someone has the chips, someone has the cash,...
Read More
By infosecbulletin
/ Monday , June 15 2026
A critical security flaw has affected the open-source security community. Recently, complete details and working exploit code were shared online....
Read More
By infosecbulletin
/ Monday , June 15 2026
Palo Alto Networks Unit 42 has given an urgent alert about the active use of CVE-2026-0257. This is a serious...
Read More
By infosecbulletin
/ Sunday , June 14 2026
Bangladesh plans to spend Tk192.66 crore to make a national hub for artificial intelligence (AI) to train new AI experts....
Read More
By infosecbulletin
/ Sunday , June 14 2026
A serious pre-authentication remote code execution (RCE) flaw in Splunk Enterprise has been revealed, earning a very high CVSS score...
Read More
By infosecbulletin
/ Saturday , June 13 2026
Anthropic said on Friday it will quickly turn off its best AI models for everyone. This comes after the U.S....
Read More
It is located in the Windows Recovery Environment (WinRE) and is linked to an important exploit chain called YellowKey, created by researcher Nightmare-Eclipse and shared on GitHub.
A successful attacker can take advantage of this problem to bypass BitLocker Device Encryption on the storage device, getting access to encrypted data without needing user passwords or decryption keys.
The flaw only affects Windows 11, Windows Server 2022, and Windows Server 2025.
No update is out yet; Microsoft has provided a guide with several steps to help while they work on a security fix.
Microsoft’s Mitigation Steps
Microsoft has provided a six-step mitigation procedure targeting the WinRE image directly:
To address the risk, the following mitigations have been outlined:
Mount the WinRE image on each device.
Mount the system registry hive of the mounted WinRE image.
Modify BootExecute by removing “autofstx.exe” value from Session Manager’s BootExecute REG_MULTI_SZ value.
Save and unload Registry hive.
Unmount and commit the updated WinRE image.
Reestablish BitLocker trust for WinRE.
Security teams running Windows 11 or Server 2022/2025 should focus on the WinRE fixing steps and apply TPM+PIN rules right away, before an official update comes out.