Published on: 14 May 2026
A researcher has published proof-of-concept (PoC) exploit codes for the critical vulnerabilities (known as "YellowKey" and "GreenPlasma") in Microsoft BitLocker and Windows CTF Monitor. These vulnerabilities could allow an attacker to bypass Microsoft BitLocker encryption to access data and gain SYSTEM privilege on systems.
Reports indicated that the proof-of-concept (PoC) exploit codes for the vulnerabilities (known as "YellowKey" and “GreenPlasma”) are publicly available and they are at high risk of exploitation. System administrators are advised to follow the recommendations provided by the vendors to mitigate the elevated risk of cyber attacks.
Successful exploitation of the vulnerabilities could lead to elevation of privilege or security restriction bypass or on an affected system.
System administrators of affected systems should follow the recommendations provided by the product vendor and take immediate actions to mitigate the risk.