Bypassing Local Windows Authentication To Defeat Full Disk Encryption
by Ian Haken In 2007, starting with Windows Vista, Microsoft began shipping a full disk encryption feature named BitLocker with professional and enterprise versions of Windows. Full disk encryption helps protect users from threats that include physical access. This can, for example, prevent the exposure of proprietary information and account credentials if a company laptop is lost, stolen, or even left temporarily accessible to an attacker. Under the hood, BitLocker utilizes a system's Trusted Platform Module (TPM) to store the secret key used for full disk encryption, and is able to use the features of the TPM to safely provide transparent, passwordless decryption of the disk on boot. Because BitLocker can work transparentlywithout any extra passwords or prompts on bootmany enterprises have opted to enable this form of full disk encryption as a part of their data loss prevention strategy. However, in this presentation, I will demonstrate how one can abuse physical access in order to bypass Windows authenticationthus accessing all of a user's dataeven when the disk is fully encrypted by BitLocker. This platform-independent attack effectively bypasses all of the protection offered by BitLocker, reliably and quickly allowing an attacker to retrieve all of the sensitive data on the machine, all without having to perform any cryptographic brute-forcing or hardware manipulation.

DEF CON 32 - Abusing Windows Hello Without a Severed Hand - Ceri Coburn, Dirk jan Mollema

BlueHat v18 || An Ice Cold boot to break bitlocker

Bypassing of Self-Encrypting Drives – Techniques for Hackers and Forensic Investigators

THESE Apps Are SPYING on You — Shut Them Off NOW!

ARMageddon: How Your Smartphone CPU Breaks Software-Level Security and Privacy

Bypassing Self-Encrypting Drives (SED) in Enterprise Environments

Perfectly secure your mobile phone: How to protect your device from unauthorized access

Passkeys Explained: Are They Actually Better Than Passwords?

The Linux Kernel Hidden Inside Windows 10

How to: Crack Bitlocker encrypted drives

BadUSB - On Accessories that Turn Evil by Karsten Nohl + Jakob Lell

"Clevis and Tang: securing your secrets at rest" - Fraser Tweedale (LCA 2020)

Passkeys SUCK (here’s why + how I use them)

World's Deadliest Computer Virus: WannaCry

Breaking Bitlocker - Bypassing the Windows Disk Encryption

Harder Drive: Hard drives we didn't want or need

How to Disappear Online and Become Untraceable

The Hidden Backdoors Inside Millions of Smart Devices | WSJ

How to HACK Windows Bitlocker - MUST SEE!

