Hacker demonstrates the supposedly-patched Windows 11 BitLocker is still vulnerable to hackers — default encryption can be overcome with network access
January 2, 2025

Hacker demonstrates the supposedly-patched Windows 11 BitLocker is still vulnerable to hackers — default encryption can be overcome with network access

This week at the Chaos Computer Club (CCC) annual Chaos Communications conference, hacker Thomas Lambertz proposed:Windows BitLocker: No need for a screwdriver to tighten“, details how users can break BitLocker encryption and gain access to protected data. Bugs that have been fixed from old reports, CVE-2023-21563still available on current versions of Windows, requires only one-time physical device access and network connection. However, like other drive decryption vulnerabilities, the attack does not require the computer to be turned on or accessed for several hours [h/t Heise].

This attack belongs to the “bitpixie” attack category and has been well documented since mid-2022. Although this specific error is Technically Fixed via the November 2022 update, which unfortunately indicates that this fix is ​​only superficial. Update the version by booting the outdated Windows bootloader using Secure Boot, extracting the encryption key to memory, then using Linux to retrieve the memory contents and find the BitLocker key Windows 11 It can still be effectively exploited as if it was never updated to address bitpixie attacks.

2024-12-31 14:44:16

Leave a Reply

Your email address will not be published. Required fields are marked *