TGViewer
Ostrich Nest Ostrich Nest @ostrichnest · 1.15K subscribers
Post #171 1.73K
Я уже лет 5 говорю, что разумно (читай для защиты действительно серьезных данных - тех, к которым могут захотеть доступа государственные акторы) защитить любую Windows систему невозможно.
Смотрите: нашли бэкдор в BitLocker (статья, репозитарий). Уязвимость позволяет записав набор заранее известных файлов на флешку обойти криптозащиту BitLocker (прозрачную шифрация жесткого диска, по идее защищающую от несанкционированного доступа в случае утери контроля над лаптопом/компьютером/сервером).
TL;DR
How to reproduce :
Copy the FsTx folder to "YourUSBStick:\System Volume Information\FsTx" as is and make sure to use a filesystem that's compatible with Windows (NTFS is preferable but I think FAT32/exFAT should work as well). Funny thing is, the vulnerability is extremely convenient, you don't even need to plug an external storage device, you can just pull out the disk, copy the files in the EFI partition, put it back and it will still work. That's how bad it is.
Plug the USB stick in your target windows computer with bitlocker protection turned on.
Reboot to Windows Recovery Environment Agent (you can do that by holding SHIFT and clicking on the restart button using your mouse)
Once you click on the restart button, lift your finger off the SHIFT key and hold CRTL and do NOT lift your finger off it.
If you did everything properly, a shell will spawn with unrestricted access to the bitlocker protected volume.


Теперь смотрите: случайно такое сделать не получится. Кто-то в Майкрософт сделал это специально.

Для чего? Никто не знает. Но спецслужбы, имея вот такую вот возможность могли бы вскрывать зашифрованные компьютеры на раз.

И таких историй как с продуктами Microsoft, так и с самим Bitlocker - немерено.

А дальше - решайте сами.
BleepingComputer Windows BitLocker zero-day gives access to protected drives, PoC released A cybersecurity researcher has published proof-of-concept (PoC) exploits for two unpatched Microsoft Windows vulnerabilities named YellowKey and GreenPlasma, which are a BitLocker bypass and a privilege-escalation flaw.
  • 👍 10
  • 🔥 5
  • 😱 3
  • 😡 1
More from @ostrichnest
  1. Sep 24, 2026А между тем очень интересные новости приходят из Лондона и Айдахо. Ли Рейбер арестован в А…
  2. Sep 10, 2026https://www.linkedin.com/posts/kristina-margaryan_hiring-devops-juniordevops-share-7503451…
  3. Sep 7, 2026А вот смотрите, что я вам принес. Это выступление депутата Гегама Манукяна от 7-го мая 202…
  4. Jul 26, 2026Я давно обещал написать про Телеграм и его безопасность. TL;DR - безопасным его можно назв…
  5. Jul 26, 2026Помоги тем, кто по тяжелейшей статье За незаконное хранение совести, Ногтями скребёт ледян…
  6. Jul 16, 2026А вот посмотрите, камрады, на дизайн платежной карты от Америа банка (я затёр персональные…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →