
今更ながらWindows 10でBitUnlockerを試してみたがReAgent.xmlを書き換えてtttracer.exeからコマンドプロンプトを起動させる方法(CVE-2025-48800)は非常に簡単にできてしまった... セキュリティパッチが当たらないWindows 10はもう安全ではない https://techcommunity.microsoft.com/blog/microsoft-security-blog/bitunlocker-leveraging-windows-recovery-to-extract-bitlocker-secrets/4442806
Post summary
The author notes that CVE‑2025‑48800 can be exploited by simply editing ReAgent.xml to launch a command prompt via tttracer.exe, warning that unpatched Windows 10 systems remain vulnerable, but does not share any PoC, exploit code, or patch details.
