Hacker News new | ask | show | jobs
by jsmith99 25 days ago
This doesn't sound bitlocker specific, sounds more like a login bypass. If you rely on TPM without PIN then it gets decrypted automatically. This should be fine normally as attackers shouldn't be able to get past login screen. But this exploit shows a way allegedly to get a unrestricted shell in the recovery environment.

The researcher claims a way to bypass PIN too but hasn't revealed it.

1 comments

Probably since disclosure didn't result in a bounty may as well sell it to someone who would pay.