Microsoft fixes serious Windows Hello security flaw
Microsoft fixes serious Windows Hello security flaw July Patch Tuesday mitigates Windows Hello bypass vulnerability When you purchase through links on our site, we may earn an affiliate commission.Here’s how it works. Cybersecurityexperts have shared a proof-of-concept to bypass theWindows Hellobiometric authentication system. Threat actors can exploit the bypass, demonstrated byidentity and access management (IAM)vendor CyberArk, to access an organization’s sensitive data by impersonating a privileged account. Leaning onofficial figuresfromMicrosoftthat suggest that over 84% ofWindows 10users sign-in to their devices using Windows Hello, CyberArk argues that the bypass poses a grave security risk for businesses transitioning to password-less authentication....