News Grower

Independent coverage of AI, startups, and technology.

Ars Technica May 14, 2026 at 18:32 Big Tech Stable Warm

Zero-day exploit completely defeats default Windows 11 BitLocker protections

It's not entirely clear how the exploit works. Microsoft says it's investigating.

Signal weather

Stable

The story has moved beyond the first headline and now acts as a reliable context anchor.

By Dan Goodin Original source
Zero-day exploit completely defeats default Windows 11 BitLocker protections

A zero-day exploit circulating online allows people with physical access to a Windows 11 system to bypass default BitLocker protections and gain complete access to an encrypted drive within seconds. The exploit, named YellowKey, was published earlier this week by a researcher who goes by the alias Nightmare-Eclipse. It reliably bypasses default Windows 11 deployments of BitLocker, the full-volume encryption protection Microsoft provides to make disk contents off-limits to anyone without the decryption key, which is stored in a secured piece of hardware known as a trusted platform module (TPM). BitLocker is a mandatory protection for many organizations, including those that contract with governments. When one disk volume manipulates another The core of the YellowKey exploit is a custom-made FsTx folder. Online documentation of this folder is hard to find. As explained later, the directory associated with the file fstx.dll appears to involve what Microsoft calls the transactional NTFS, which allows developers to have “transactional atomicity" for file operations in transactions with a single file, multiple files, or ones that span multiple sources. Read full article Comments

Stay on the signal

Follow Zero-day exploit completely defeats default Windows 11 BitLocker protections

Follow this story beyond a single article: new follow-ups, adjacent sources, and the evolving storyline.

We send a confirmation link first, then only meaningful digests.

Story map

Understand this topic fast

A quick entry into the story: why it matters now, who is involved, and where to go next for context.

Why it matters now

This story is still moving and pulling follow-up coverage.
There are already 6 connected articles in the same storyline to continue from here.
The story keeps orbiting around Ars Technica, BitLocker, and Bitlocker Protections, so the entity pages are the fastest way to build context.
Ars Technica already has 4 follow-up stories on the same theme.

Topic constellation

Open the live map for this story

See which entities, story threads, sources, and follow-up articles shape this story right now.

Click nodes to continue

Entity Cluster Article Hub Source

Story timeline

Continue with this story

A short sequence of events and follow-up stories to understand the arc quickly.

Jun 28, 2026 at 18:49 Ars Technica

Why did this journal retract two 1940s papers by Max Planck?

Clicking on the links now reveals blank pages and empty PDFs. "Intellectually, it’s not acceptable.”

Jun 27, 2026 at 11:07 Ars Technica

Apple and Audi alumni have made a luxe EV based on the moon buggy

The Amble One is a street-legal $25,000 electric buggy designed for luxury resorts.

Jun 26, 2026 at 22:19 Ars Technica

South Korea plans to train entire military as "drone warriors"

Half-million strong military will train on drones as “universal combat tool.”

Jun 26, 2026 at 21:43 Ars Technica

Doctors suspected man had brain cancer. He actually had worms.

His doctors went looking for cancer, then they saw the worms' heads.

Jun 26, 2026 at 21:12 Ars Technica

Streaming services’ obnoxiously loud ads become illegal on July 1 in California

Illinois passed a similar law, giving services more incentive to make ads less booming.

May 14, 2026 at 18:32 Ars Technica

Zero-day exploit completely defeats default Windows 11 BitLocker protections

It's not entirely clear how the exploit works. Microsoft says it's investigating.

How reliable this looks

Signal and trust for Ars Technica

This source works at a rapid pace: 100% of recent stories land in the hot window, and 0% carry visible search signal.

Trusted

Reliability

92

Freshness

100

Sources in storyline

1

Related articles

More stories that share tags, source, or category context.

SecurityLab Jun 27, 2026 at 08:10 Cybersecurity
Rising Hot

Компьютер ожил, диплом исчез. Как работает новый «спасительный откат» в Windows 11

Долгожданный аналог Time Machine от Apple оказался не таким однозначным, как ожидали пользователи.

Signal weather

Momentum is building quickly, so this card is a good early entry point into the topic.

Why now

Fresh coverage with immediate momentum.

More from Ars Technica

Fresh reporting and follow-up coverage from the same newsroom.

Open source page