Researchers uncover YellowKey and GreenPlasma Windows Zero-Days
ID: 5a46b71e-dd36-5021-9834-8cda4dd2f227
STIX ID: report--5a46b71e-dd36-5021-9834-8cda4dd2f227
Feed Name: Security Affairs
Researchers disclosed two new Windows zero-days — YellowKey, a BitLocker bypass affecting Windows 11 and Server 2022/2025 that can grant shell access to encrypted volumes via WinRE, and GreenPlasma, a CTFMON privilege-escalation flaw on Windows 11 and Server 2022/2026 that can be turned into SYSTEM-level escalation; the report also references three earlier Microsoft Defender flaws (BlueHammer, RedSun, UnDefend), one of which was fixed, and Huntress reporting real-world exploitation of those Defender issues.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
