- Joined
- Jan 20, 2026
- Messages
- 345
- Reaction score
- 2,288
The Bitskrieg attack will reset the key confidence mechanisms of Secure Boot.

A recent statement by a specialist under the pseudonym Nightmare Eclipse caused a lively reaction in the information security community. In a published message, the author announced the imminent release of a new vulnerability called “Bitskrieg”, associated with the confidence-building mechanisms of Secureu Boot. According to the author, it allows you to completely bypass the protection of BitLocker.
The message appeared on the personal blog Nightmare Eclipse on May 29. The author said that after recent events, he began to contact specialists and transmit information about new security problems. The main work on Bitskrieg, according to the publication, was done by the researcher under the pseudonym JonasLyk, while Nightmare Eclipse himself described his own contribution more ironically.
According to the authors, the detected method does not disable Secure Boot completely, but violates security guarantees, which must provide the trust load checking mechanism. The publication also talks about the possible impact on confidential virtual machines, although the authors themselves emphasize that they were unable to verify such a scenario due to lack of access to the relevant infrastructure.
Nightmare Eclipse said that Bitskrieg completely bypasses BitLocker. There are no technical details, independent confirmations or demonstration of the method in the publication. It is also not known whether the information was transferred to developers of software for the correction.
Nightmare Eclipse promised to reveal details of the vulnerability уязвимостиin June. Before the publication of technical analysis, it is impossible to check the statement, so while we are talking about a preliminary announcement, and the real scale of the potential threat has yet to be assessed.

A recent statement by a specialist under the pseudonym Nightmare Eclipse caused a lively reaction in the information security community. In a published message, the author announced the imminent release of a new vulnerability called “Bitskrieg”, associated with the confidence-building mechanisms of Secureu Boot. According to the author, it allows you to completely bypass the protection of BitLocker.
The message appeared on the personal blog Nightmare Eclipse on May 29. The author said that after recent events, he began to contact specialists and transmit information about new security problems. The main work on Bitskrieg, according to the publication, was done by the researcher under the pseudonym JonasLyk, while Nightmare Eclipse himself described his own contribution more ironically.
According to the authors, the detected method does not disable Secure Boot completely, but violates security guarantees, which must provide the trust load checking mechanism. The publication also talks about the possible impact on confidential virtual machines, although the authors themselves emphasize that they were unable to verify such a scenario due to lack of access to the relevant infrastructure.
Nightmare Eclipse said that Bitskrieg completely bypasses BitLocker. There are no technical details, independent confirmations or demonstration of the method in the publication. It is also not known whether the information was transferred to developers of software for the correction.
Nightmare Eclipse promised to reveal details of the vulnerability уязвимостиin June. Before the publication of technical analysis, it is impossible to check the statement, so while we are talking about a preliminary announcement, and the real scale of the potential threat has yet to be assessed.