Microsoft Resolves BitLocker Recovery Bug in Windows Server 2025

Microsoft Resolves BitLocker Recovery Bug in Windows Server 2025

First seen 11 Jun 2026, 10:43 UTC BleepingcomputerFeeds.4Sysops 83% similarity 27.9

Article Content

Browse articles
ThreatCluster

Microsoft has fixed a bug affecting Windows Server 2025 and Windows 11 systems that caused them to enter BitLocker recovery mode after installing security updates. The issue was linked to specific Group Policy configurations involving Trusted Platform Module (TPM) validation profiles, particularly with PCR7 settings. Affected devices prompted users for a recovery key immediately following the installation of updates that modified boot files. Microsoft acknowledged the issue after the April 2026 Patch Tuesday and released cumulative updates to address it. The updates were included in KB5094125 for Windows Server 2025 and KB5093998 for Windows 11 23H2. IT administrators were advised to adjust Group Policy settings or apply a Known Issue Rollback if they could not deploy the updates immediately. The bug primarily impacted enterprise systems rather than personal devices. The resolution aims to prevent unexpected recovery prompts during system restarts.

Key Points: • Microsoft resolved a BitLocker recovery issue affecting Windows Server 2025 and Windows 11. • The bug was triggered by specific Group Policy configurations involving TPM and PCR7. • Cumulative updates KB5094125 and KB5093998 were released to fix the issue.

ThreatCluster AI

Timeline

2026-04-11
Issue acknowledged after April 2026 Patch Tuesday
Microsoft confirmed that some Windows Server 2025 devices entered BitLocker recovery after installing updates.
BleepingComputer
2026-06-11
Cumulative updates released to resolve BitLocker recovery bug
Microsoft released KB5094125 and KB5093998 to address the BitLocker recovery issue on affected systems.
Feeds.4Sysops

Community

Browse all →

Tracked Entities in This Story