Robin’s Newsletter #413

17 May 2026. Volume 9, Issue 20
BitLocker encryption busted, OpenAI announces Daybreak, and UK Gov signals Computer Misuse reform.
Join hundreds of subscribers who get this first, every Sunday. Subscribe

This week

Need to Know, 17th May 2026

  • YellowKey busts BitLocker, decrypting hard drives and granting SYSTEM access
  • OpenAI announces Daybreak cyber programme combining defensive, offensive tooling
  • UK Regulators remind financial services to up their cyber games
  • TeamPCP behind latest wave of Shai-Hulud software supply chain attacks
  • UK Government signals reform of Computer Misuse Act

Interesting stats

40% of global ransomware attacks are accompanied by threats of physical violence, according to Semperis.

Five things

  1. BitLocker Bust: YellowKey is an “insane” vulnerability that defeats Windows BitLocker. The exploit involves plugging in a specially crafted USB key, and then (re)booting the device into Windows Recovery. Upon doing so, instead of prompting for a BitLocker key, a command prompt is displayed with SYSTEM privileges. It’s unclear, and perhaps most interesting, that the \System Volume Information\FsTx directory on the USB drive can affect the legitimate one in the Windows Recovery partition. To exploit the issue, you need to have physical access to the device. That limits exposure, though it will surely be of interest in intelligence or law enforcement environments, or to attackers with unattended access to devices (during travel, for example). At the moment, it means that lost or stolen Windows computers, even if encrypted, may be trivially unlocked, potentially constituting a reportable security incident, especially if they contain local copies of personal data.

  2. Daybreak: OpenAI has announced Daybreak, an initiative to “accelerate cyber defenders and continuously secure software”. This is most relevant to tech companies and those developing their own software. If you’re largely a consumer of SaaS or on-prem software from vendors, there’s less here for you. That’s because Daybreak is focused on finding or triaging vulnerabilities in code bases, and then generating and patching the issues that it finds. If you’re not writing code, this isn’t for you. Daybreak combines three models with different levels of hoops required to obtain access: GPT-5.5 for general use, GPT-5.5 with Trusted Access for Cyber for defensive work, and finally GPT-5.5-Cyber, with revised guardrails that allow offensive work like penetration testing. At some point, AI like this will become very good at decompiling and understanding executables. Then I can see plenty of security researchers, large organisations, and, yes, threat actors, turning their attention to proprietary software too.

  3. UK FS Regulation: The Bank of England, FCA, and HM Treasury have issued a joint statement on Frontier AI models and cyber resilience. The statement says that they judge regulated firms should be taking steps to improve governance, vulnerability management, third-party management, protection, and incident response. The regulators note that this shouldn’t introduce “new expectations”, rather it “reinforces existing messages”. However, the rapid evolution of technology and AI will make it seem like new requirements for many smaller firms.

  4. Software supply-chain: TeamPCP is believed to be behind a new wave of Shai-Hulud software supply chain attacks on TanStack and Mistral AI npm packages. TanStack’s report says the attackers gained access through three steps: “the pull_request_target “Pwn Request” pattern, GitHub Actions cache poisoning across the fork↔base trust boundary, and runtime memory extraction of an OIDC token from the GitHub Actions runner process.”

  5. Computer Misuse: The UK government has announced that it will rewrite the Computer Misuse Act, paving the way for a public interest defence that would protect security researchers. CMA reform is well overdue, with many facing potential legal risk from broad definitions of ‘attempting to gain access’ to a system without proper authorisation, which don’t reflect how technology works.

In brief

And finally

  • As we approach eight years of Robin’s Newsletter, can I ask a couple of favours? 1. Send this on to someone you think would benefit from subscribing. Your recommendation is important and carries a lot of weight. 2. If you want to understand your organisation’s cyber risk, or are embarking on a security programme, I’d love for Cydea to be considered. Hit reply now and give me a heads-up: I’ll make sure we look after you. Thank you!
Robin
  Artificial Intelligence (AI) BitLocker OpenAI Regulation Software supply-chain Shai-Hulud Computer Misuse Act South Staffordshire Water