Windows Recovery State Research

Use when hunting Windows pre-authentication and recovery vulnerabilities involving WinRE, WinPE, BitLocker auto-unlock, Defender Offline, ReAgent.xml, BCD, unattended setup, offline servicing, recovery or EFI partitions, removable media, and persisted state that changes trusted behavior across reboot.

netvar1337 Updated

File contents

netvar1337/unleash/tree/main/contrib/skills/windows-recovery-state-research commit 99dcb28f61

Frequently asked questions

npx skillmds@latest add netvar1337/windows-recovery-state-research