Some Windows 10 and 11 users may face unexpected BitLocker recovery prompts after the latest security update.
Key Takeaways:
Microsoft has warned users that the October 2025 security update may trigger an unexpected BitLocker recovery prompt on some systems. The issue impacts Windows 11 versions 25H2 and 24H2, as well as Windows 10 version 22H2.
BitLocker is a security feature built into Windows that encrypts the contents of a drive to protect data from unauthorized access, especially in cases of theft or tampering. It works by locking the drive and requiring a recovery key if the system detects changes to hardware, firmware, or boot configuration that could indicate a security threat. This helps ensure that sensitive information remains secure even if someone tries to bypass the operating system or access the drive directly.
According to Microsoft, some devices may enter BitLocker recovery during restart or startup. Starting with Windows 11 version 24H2, BitLocker encryption is now enabled by default on clean installations for supported hardware. This means users setting up a new laptop with a Microsoft account will already have BitLocker protection automatically activated.
“Affected devices might boot into the BitLocker recovery screen, requiring users to enter the recovery key once. After the key is entered and the device restarts, it will boot normally without any further BitLocker prompts. This issue primarily appears to affect Intel-based devices that support Connected Standby, a feature that enables the device to stay connected to the network while in a low power state,” Microsoft explained.

Microsoft has released a fix to resolve the BitLocker recovery issue on Windows PCs. However, administrators must manually deploy the update using the Known Issue Rollback group policy. The company also recommends that affected enterprise customers contact Microsoft Support for Business for assistance.
Meanwhile, consumers who experience the BitLocker recovery issue without access to their recovery key risk losing all data stored on their device. In such cases, they can try retrieving the recovery key through their Microsoft account.