EPISODE · May 14, 2026 · 0 MIN
Researcher Drops YellowKey, GreenPlasma Windows Zero-Days
from Security Stuff · host Trace3
A disgruntled security researcher has publicly released two Windows zero-day vulnerabilities called YellowKey and GreenPlasma. YellowKey allows attackers with physical access to bypass BitLocker encryption on Windows 11 machines, even those protected with TPM, by exploiting a hidden component in the Windows Recovery Environment that the researcher suspects may be an intentional backdoor. GreenPlasma enables privilege escalation to system-level access, and multiple security experts have confirmed both exploits work on recent Windows builds, raising concerns that attackers could quickly weaponize the publicly available proof-of-concept code before Microsoft issues patches.
Embed this episode
What this episode covers
A disgruntled security researcher has publicly released two Windows zero-day vulnerabilities called YellowKey and GreenPlasma. YellowKey allows attackers with physical access to bypass BitLocker encryption on Windows 11 machines, even those protected with TPM, by exploiting a hidden component in the Windows Recovery Environment that the researcher suspects may be an intentional backdoor. GreenPlasma enables privilege escalation to system-level access, and multiple security experts have confir...
NOW PLAYING
Researcher Drops YellowKey, GreenPlasma Windows Zero-Days
No transcript for this episode yet
Similar Episodes
No similar episodes found.
Similar Podcasts
No similar podcasts found.