Malware Exploits Windows Hello for Business Keys to Maintain Entra ID Access
Researchers have identified a technique where malware abuses Windows Hello for Business keys to gain persistent access to Microsoft Entra ID, even after a user's password is reset. This allows attackers to maintain footholds in enterprise environments by leveraging legitimate authentication mechanisms. The finding highlights a critical security risk for organizations relying on passwordless identity systems.