Windows Hello for Business keys can be silently abused by malware
VulnResearcher Dirk-jan Mollema demonstrated that malware can exploit Windows Hello for Business keys on TPM-backed systems without extracting private keys, recovering PINs, or triggering biometric prompts.
Read full story at SC Media →