Loading video...
Video Failed to Load
A security researcher (Dirk-jan) just dropped a new technique for abusing Windows Hello for Business keys from a compromised user session. No admin rights. No PIN. No biometrics. Full persistence into Entra ID cloud from a user-level implant. KQL detection query included. If you do anything with Active Directory,... show more
46,187 views • 4 days ago •via X (Twitter)
0 Comments
No comments available
Comments from the original post will appear here

