We're taking on new cases now · Weekdays, 9am–5:30pm Need it back quickly? Call 0800 6890668
MKDR Milton Keynes Data Recovery 0800 6890668 Get it diagnosed
MKDR / Common failures / BitLocker & locked drives

Cause of loss · BitLocker & encryption

BitLocker recovery in Milton Keynes. It is not the screen at fault. It is the missing key.

That screen is BitLocker doing its job. One of the things it watches has moved — a firmware update, a boot setting, a replaced board — and until the 48-digit recovery key goes in, nobody gets past. Usually the drive itself is healthy and only the key has gone missing. Find the key, and what's left is ordinary bench work.

No data back, no fee — most jobs Free diagnosis, one fixed quote Send it by post from anywhere in Buckinghamshire

Run the problem past an engineer
0800 6890668

What those symptoms actually mean.

No page for your town? Try the fault-finder →
On screenWhat's behind itFirst move
BitLocker recovery — Enter the recovery key for this driveSomething in the boot chain shifted, so the TPM will not hand the key overGo and find the key; no guessing
Use the number keys or function keys F1–F10 (use F10 for 0).How the screen tells you to key in those 48 digitsDigits only — your password won't do
Recovery key ID (to identify your key):A short label, eight characters long, that identifies which key you needUse the ID to locate the key
For more information go to: aka.ms/recoverykeyfaqMicrosoft's own guidance pageYour account is where the key lives
BitLocker waiting for activationEncryption is on the volume, but not switched onYou can read it; it isn't secure
Encryption sitting on top of dying hardwareFix the mechanics before the cryptoClone it first, unlock later
Sending it by post: send it in on a tracked, insured service to our secure intake lab — the return postage is ours — or ring first and an engineer will talk you through packing it. Every posting step is set out on the enquiry page.

Places a recovery key hides.

Your own Microsoft accountSign in at aka.ms/myrecoverykey on any machine. Home PCs tend to stash the key there quietly, without saying so.
A work or college loginUse your work login at aka.ms/aadrecoverykey. Managed devices push their keys into Entra ID automatically.
Your IT deskCompany fleets escrow to Active Directory or Intune. Give IT the Recovery Key ID over the phone and they should find it quickly.
A printout, file or stickThe BitLockerRecoveryKey…TXT file, or that sheet Windows asked you to print when encryption was switched on. People find it far more often than they expect to.

How the recovery runs, stage by stage.

See the newest cases →
01

Logged in, checked at no charge Free

Every item gets its own case number on the day it lands here. An engineer traces the fault, gives you a plain assessment of what is realistically recoverable, and puts one fixed price in writing. The diagnosis is free, you are under no obligation, and chargeable work starts only when you say go.

No charge to diagnoseOne written quote, fixedNo commitment
02

The key comes first

Work starts from the Recovery Key ID shown on screen. We follow it through every place a key gets stored: a Microsoft account, a work sign-in, an IT escrow, the printed sheet from the day encryption was switched on. Said plainly — no key, no data, for us or for anybody. Searching beats tooling here.

ID matched to a keyAll escrows searched
03

Clone before unlocking

If the disk underneath is dying, we take a full sector-by-sector copy while it is still encrypted, so decryption never has to run on ailing hardware.

Imaged in its locked stateDrive risk taken away
04

Unlock and repair the image

Once the key is to hand the clone opens. Damaged BitLocker metadata is rebuilt with repair-bde, Microsoft's own utility, and the result is written to new media.

repair-bde against the cloneWritten out to fresh media
05

Played back, checked, handed back

You get the full list of recovered files first, and nothing is charged until you approve it. Data goes back on fresh media, return postage paid, and the job stays open on our side until you confirm every file opens at your end.

You sign off the file listCopied onto unused mediaReturn post is paid by us

What the imager checks first

  • The ID is a label, not a key — those 8 characters say which 48-digit key belongs to the drive; typed in on their own they do nothing. Read the ID to IT and they can look the real key up.
  • July 2024 made the case twice over — a Windows update first pushed machines into recovery mode, then the CrowdStrike outage took down 8.5 million devices by Microsoft's reckoning. Plenty of businesses learned right then that nobody had ever escrowed their keys.
  • Damaged metadata can be rebuilt — repair-bde will reconstruct a broken BitLocker volume onto another disk. You still have to supply the key.
  • Dying and encrypted? Clone it — unlocking means long sequential reads end to end, and that is the last thing a drive with failing heads should be asked to do.

No dressing it up: a BitLocker volume without its 48 digits stays shut. Microsoft states that plainly and so will we — the encryption would be worthless otherwise. Recovery therefore begins as a search rather than an engineering job: personal account, work account, the escrow IT keeps, a sheet of paper in a drawer. Where the key turns up, the files normally follow. Where it truly does not exist, no honest firm can open the drive, and you will hear that free of charge at diagnosis rather than after a bill.

Lately in the casebook.

MK · MKD-2026-4642CONFIRMED ✓

A BIOS update, and a Leighton Buzzard architect was locked out of their own workstation

A firmware update ran overnight and shifted the TPM measurements, so the workstation asked for a key that had never been written down anywhere. We tracked the Recovery Key ID through to the firm's escrow in Entra ID, then used repair-bde to rebuild the broken BitLocker metadata on a clean disk. No project file was lost.

100% recovered3 days on the workbench

While it is still in your hands.

Worth doing

  • Write the Recovery Key ID down character for character
  • Try aka.ms/myrecoverykey first, then aka.ms/aadrecoverykey
  • Ask IT: work machines escrow to Active Directory or Intune
  • Dig out the paper or .TXT saved when encryption started

Best avoided

  • Trying to guess the digits
  • Reinstalling Windows to make the screen go away — it takes the data too
  • Entering the 8-character ID where the key should go
  • Formatting a disk because you assume it's locked for good

The questions we get asked most.

Where do I find my BitLocker recovery key?

On a personal Microsoft account, start at aka.ms/myrecoverykey; for work or school, aka.ms/aadrecoverykey. Ask IT whether Intune or Active Directory holds an escrow copy, and dig out whatever got printed or saved to a text file when encryption went on. The Recovery Key ID on screen says which one to match.

Without the key, can BitLocker data be recovered?

No. Not us, not Microsoft, not anyone else — the encryption is behaving exactly as designed. The jobs that do succeed are the ones with a key still in existence somewhere, where the true fault sits in the drive or in its metadata.

Why is my PC suddenly demanding the recovery key?

Something the TPM keeps watch on has stopped matching. Common triggers: an update to BIOS or firmware, Secure Boot settings changed, a repair to the board, the drive moved into another machine — and, for a great many people in July 2024, a Windows update.

The drive is encrypted and failing at once — which one do you tackle first?

Image first, decrypt second. The encrypted disk is copied in full, and the unlock then runs against that healthy copy. Making a failing drive decrypt itself puts the steps the wrong way round.

Leave it switched off until it reaches us.

Switch a failing device on again and you lose a little more. Open a case before you do — the diagnosis is free, whatever it finds.

0800 6890668