By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Microsoft offers 2 emergency measures to protect your Windows PC
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > Mobile > Microsoft offers 2 emergency measures to protect your Windows PC
Mobile

Microsoft offers 2 emergency measures to protect your Windows PC

News Room
Last updated: 2026/05/21 at 5:50 AM
News Room Published 21 May 2026
Share
Microsoft offers 2 emergency measures to protect your Windows PC
SHARE

A flaw, called YellowKey, allows you to bypass BitLocker, the Windows 11 encryption system, with a USB key and a simple manipulation at startup. Microsoft, which does not yet have a patch to offer, is publishing two emergency measures to limit the risks.

A cybersecurity researcher recently discovered a major vulnerability affecting BitLocker, the encryption system built into Windows 11. The flaw allows bypass encrypted data protection in a very simple way. According to investigations carried out by Nightmare-Eclipse, the expert who discovered the flaw, all you need to do is copy a specific folder to a USB stick, insert it into the targeted computer, then start the machine by holding down the Ctrl key.

The operation automatically opens the recovery environment WinRE (Windows Recovery Environment). In it, the command prompt gives full access to the encrypted disk and all the data it contains, as if BitLocker did not exist. The flaw was named YellowKey. Faced with the outcry, Microsoft committed to investigating and deploying a security patch as soon as possible.

Also read: On Windows 11, how to secure the BitLocker encryption recovery key and erase it from Microsoft servers?

Two solutions to counter YellowKey

A few days later, the American publisher decided to highlight two solutions to protect yourselffor lack of being able to propose a real corrective. First of all, Microsoft consists of delete an entry in the Windows registry related to the program “autofstx.exe”. This manipulation prevents the vulnerable component from launching automatically when WinRE starts. This is a rather technical operation, which should be reserved for system administrators.

Furthermore, the vulnerability does not work on systems equipped with a TPM (Trusted Platform Module) chip with PIN code. This is what security researcher Will Dormann of the Tharros company discovered, denying Nightmare-Eclipse’s conclusions. This adds a PIN code that you will need to enter at each boot to decrypt the disk. It is imperative to configure a PIN code to protect yourself. Using a TPM chip is not enough. This setting is changed through PowerShell, Control Panel, or Microsoft Intune for business.

Microsoft regrets a “violation of best practices”

In the process, Microsoft castigated the practices of Nightmare-Eclipse. The publisher regrets that the researcher has disclosed the flaw on the Internet before warning itwhile releasing working exploit code for YellowKey. It’s a “violation of vulnerability management best practices”believes Microsoft. To put pressure on Microsoft, the researcher also posted a proof-of-concept (PoC), which concretely demonstrates how it is possible to exploit the flaw. This document obviously risks giving ideas to cybercriminals.

Note that Nightmare-Eclipse is not his first attempt. The researcher has already disclosed several Windows security vulnerabilities in the same waydont MiniPlasma, BlueHammer or even GreenPlasma. Each time he accompanies his discoveries with a technical demonstration aimed at provoking a rapid reaction from Microsoft.

👉🏻 Follow tech news in real time: add 01net to your sources on Google, and subscribe to our WhatsApp channel.

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article a flaw still without a name a flaw still without a name
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

a flaw still without a name
a flaw still without a name
Computing
Nvidia graphics card drivers vulnerable under Linux and Windows
Nvidia graphics card drivers vulnerable under Linux and Windows
Software
17 LLMs for Special Domains | Computer Week
17 LLMs for Special Domains | Computer Week
News
first you will have to take a two-hour course
first you will have to take a two-hour course
Gaming

You Might also Like

after the Netherlands, another European country opens up to autonomous driving
Mobile

after the Netherlands, another European country opens up to autonomous driving

3 Min Read
The PS5 for 229 euros thanks to the new Bbox offers at Bouygues!
Mobile

The PS5 for 229 euros thanks to the new Bbox offers at Bouygues!

6 Min Read
Firefox 151 lets you choose VPN location and boosts its AI on mobile
Mobile

Firefox 151 lets you choose VPN location and boosts its AI on mobile

3 Min Read
Pricing error or not, this Panasonic 4K LED TV is less than 300 euros at JoyBuy
Mobile

Pricing error or not, this Panasonic 4K LED TV is less than 300 euros at JoyBuy

5 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?