Elektrine lite

← Feed

@freeman@sh.itjust.works

Post #2870662

2026-05-18 15:10 UTC

What are the indications that the BitLocker vulnerability is already being utilized? Microsoft shipping a vulnerable version of the recovery environment. It is the ‘exploit’. Alleged by a guy who was fired from Microsoft. I’d take that with a pinch of salt. Such is the nature of closed source software. You select people who will remain complicit till they have a grievance against you. Even if they don’t and talked for moral reasons do you think they would not been fired for it? That being said, open source repos are being attacked constantly with attempts at intentional malicious code injection - I’m sure you’ve heard of XZ Utils? How many others went through and are being exploited without anyone noticing? Who knows. How many more went through at closed source software a limited amount of people can test in the same way?

Replies (1)

  • @Alaknar@sopuli.xyz 2026-05-19 07:03

    Microsoft shipping a vulnerable version of the recovery environment. It is the ‘exploit’. Red Hat and Canonical shipped a vulnerable version of SSH, the thing was caught basically hours before hitting all devices around the world. Should Red Hat and Canonical be now considered hostile as much as MS is? You select people who will remain complicit till they have a grievance against you. Even if they don’t and talked for moral reasons do you think they would not been fired for it? I can only answer by saying this: I wish you luck in the job market and hope you’ll eventually find an employer you don’t assume to be a hostile entity towards you. Who knows. How many more went through at closed source software a limited amount of people can test in the same way? This is the equivalent of “prove that God doesn’t exist”. We can’t know because they haven’t been found, mate.

    Open ##2870661