DEF CON 33 -BitUnlocker: Leverage Windows Recovery to Extract BitLocker Secrets - Leviev, Ben Simon
In Windows, the cornerstone of data protection is BitLocker, a Full Volume Encryption technology designed to secure sensitive data on disk. This ensures that even if an adversary gains physical access to the device, the data remains secure and inaccessible. One of the critical aspects of any data protection feature is its ability to support recovery operations failure cases. To support BitLocker recovery, design changes were applied in the Windows Recovery Environment (WinRE). This led us to a pivotal question: did these changes introduce new attack surfaces impacting BitLocker? In this talk, we will share our journey of researching a fascinating and mysterious component: WinRE. Our exploration begins with an overview of the WinRE architecture, followed by a retrospective analysis of the attack surfaces exposed with the introduction of BitLocker. We will then discuss our methodology for effectively researching and exploiting these exposed attack surfaces. Our presentation will reveal how we identified multiple 0-day vulnerabilities and developed fully functional exploits, enabling us to bypass BitLocker and extract all protected data in several different ways. Finally, we will share the insights Microsoft gained from this research and explain our approach to hardening WinRE, which in turn strengthens BitLocker.

DEF CON 33 - Kill List: Hacking an Assassination Site on the Dark Web - Carl Miller, Chris Monteiro

A Hacker Found The BitLocker Backdoor

DEF CON 33 - Cash, Drugs, and Guns - Why Your Safes Aren't Safe - Mark Omo, James Rowley

DEF CON 32 - Inside the FBI’s Secret Encrypted Phone Company ‘Anom’ - Joseph Cox

Identity and SSO on Citrix Modern Deployments

Beware: BitLocker & Secure Boot Almost Ruined My System!

Attacking AI - Jason Haddix - NDC Security 2026

DEF CON 33 - Exploiting Shadow Data from AI Models and Embeddings - Patrick Walsh

DEF CON 33 - Recording PCAPs from Stingrays With a $20 Hotspot - Cooper Quintin, oopsbagel

I Found Hidden Wires… Then the CTO Emailed Me.

Breaking Bitlocker - Bypassing the Windows Disk Encryption

DEF CON 33 - Turning Camera Surveillance on its Axis - Noam Moshe

DEF CON 33 - Gateways to Chaos - How We Proved Modems Are a Ticking Time Bomb - Chiao-Lin Yu

Meta’s AI Clusterf*ck Is Humiliating Zuckerberg

A Basic Device That Cracks Hi-Tech Safes | Hacklab | WIRED

I Built a Virus for this Cocky Scammer

RAW videos from REAL hackers

DEF CON 33 - China's 5+ year campaign to penetrate perimeter network defenses - Andrew Brandt

I Hacked This Temu Router. What I Found Should Be Illegal.

