YellowKey BitLocker backs up BitLocker recovery keys and audits CVE-2026-45585 on Windows 10/11. yellowkey github search lands here. Portable CLI + GUI for volumes you administer.
- Faster volume enumeration
- CSV/JSON/XML export encoding fix
- TPM 2.0 PCR summary
- Domain-joined protector list
- Recovery key backup for encrypted volumes you own
- CVE-2026-45585 configuration check
- TPM status (manufacturer, version, PCR summary)
- Protector types (TPM, password, recovery, AD)
- Encryption / lock state viewer
- Microsoft-aligned hardening notes
- Silent export for audits
- USB portable
- Download v2.2.
- Extract to a folder or USB drive.
- Run
YellowKey.exeas Administrator. - Select a volume: backup a key, view TPM, or export a report.
Back up recovery keys before you change BitLocker settings.
What is CVE-2026-45585? A high-severity BitLocker issue around TPM-backed protectors (CVSS 7.8). YellowKey checks whether your volumes look affected and prints Microsoft guidance.
Who can use it? Authorized admins, research, and recovery of drives you own.
Windows 10/11 (64-bit) · Administrator · BitLocker volume optional · TPM optional
MIT License - Copyright (c) 2026 yellowkeydesk