Theme:
Light Dark Auto
GeneralTop StoriesPoliticsBusinessEconomyTechnologyInternationalEnvironmentScienceSportsHealthEducationEntertainmentLifestyleCultureCrime & LawTravel & TourismFood & RecipesFact CheckReligion
TECHNOLOGY
Negative Sentiment

United States researchers uncover Windows firmware password bypass

Read, Watch or Listen

United States researchers uncover Windows firmware password bypass
Media Bias Meter
Sources: 2
Center 100%
Sources: 2

United States-based security researchers have disclosed a vulnerability in the Microsoft Windows Recovery Environment (WinRE) that enables bypassing UEFI and BIOS password protections on certain Windows 10 and Windows 11 systems. Tracked as CERT/CC VU#226679 and CVE-2026-45585, the flaw exposes a weakness in pre-boot security controls when devices rely on the built-in recovery platform. Under specific firmware implementations, WinRE can be manipulated to invoke an alternate boot path that does not consistently enforce firmware-level authentication. This behavior allows individuals with physical or administrative access to circumvent administrator-set firmware passwords that are intended to protect system configuration and boot security policies. United States researchers say the vulnerability is particularly relevant to scenarios resembling so-called "Evil Maid" attacks, in which a threat actor gains temporary physical access to an unattended computer. In environments where organizations depend on firmware passwords to prevent changes to boot order, disable Secure Boot, block booting from external media, or preserve full-disk encryption protections, the WinRE flaw undermines these assumptions. By entering recovery mode through options such as the F11 recovery menu or the "Reset this PC" function, an attacker can exploit the inconsistent enforcement of pre-boot authentication to reach underlying configuration interfaces without supplying the required BIOS or UEFI password. The issue is closely linked to a publicly disclosed exploit chain known as "YellowKey," which demonstrates how the weakness can be abused in practice.

Prepared by Jonathan Pierce and reviewed by editorial team.

Timeline of Events

  • Originally, firmware passwords protected boot configuration
  • Recently, researcher reveals related YellowKey exploit technique
  • Recently, WinRE boot path inconsistency documented publicly
  • Recently, CERT/CC assigns identifier VU#226679
  • Recently, vulnerability registered as CVE-2026-45585
  • Today, flaw disclosed affecting Windows 10, 11
  • Today, experts warn of Evil Maid scenarios

Why This Matters to You

Your computer's security is at risk. This flaw lets people bypass password protections on Windows 10 and 11. It's especially risky if someone gets physical access to your computer. They could change boot order, disable Secure Boot, or even access encrypted data.

The Bottom Line

Check your Windows Recovery Environment settings. Make sure you're not relying solely on firmware passwords for security. And remember, physical security is just as important as digital. Worth forwarding if you know someone who uses Windows 10 or 11.

Media Bias
Articles Published:
1
Right Leaning:
0
Left Leaning:
0
Neutral:
1

Who Benefited

Not specified in source.

Who Impacted

Not specified in source.

Media Bias
Articles Published:
1
Right Leaning:
0
Left Leaning:
0
Neutral:
1
Distribution:
Left 0%, Center 100%, Right 0%
Who Benefited

Not specified in source.

Who Impacted

Not specified in source.

Coverage of Story:

From Left

No left-leaning sources found for this story.

From Center

United States researchers uncover Windows firmware password bypass

JQJO
From Right

No right-leaning sources found for this story.

Related News

Comments

JQJO App
Get JQJO App
Read news faster on our app
GET