As cited
Copy frozen at (site build).
vulnerabilities
Flaws in Passkey Implementation Show Old Attacks Still Work
Researchers identified implementation flaws in Microsoft's passkey handling that could enable attackers to impersonate privileged users. The findings were prepared for presentation at the Black Hat USA security conference. The vulnerabilities demonstrate that established attack techniques remain effective against newer authentication mechanisms.
Why it matters: Microsoft customers and their administrators face the risk of account takeover through passkey impersonation if these flaws are exploited in the wild; practitioners should monitor for Microsoft's remediation guidance and review their passkey deployment settings.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
vulnerabilities
Flaws in Passkey Implementation Show Old Attacks Still Work
Researchers identified implementation flaws in Microsoft's passkey handling that could enable attackers to impersonate privileged users. The findings were prepared for presentation at the Black Hat USA security conference. The vulnerabilities demonstrate that established attack techniques remain effective against newer authentication mechanisms.
Why it matters: Microsoft customers and their administrators face the risk of account takeover through passkey impersonation if these flaws are exploited in the wild; practitioners should monitor for Microsoft's remediation guidance and review their passkey deployment settings.
- Source published
- First seen by Cybersecurity Tracker