Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Windows 11 Vulnerabilities Expose MFA Flaws

Windows 11 Vulnerabilities Expose MFA Flaws

Posted on August 10, 2026 By CWS

Recent findings reveal critical vulnerabilities in Windows 11 and Microsoft Entra ID, highlighting weaknesses in the Multi-Factor Authentication (MFA) process. The ‘Pass-the-Passkey’ attack techniques, identified by SpecterOps, exploit implementation flaws in WebAuthn, compromising security even when private keys are securely stored.

Uncovering WebAuthn Vulnerabilities

SpecterOps has identified three primary vulnerabilities within the WebAuthn ecosystem, affecting not only Windows 11 but also Microsoft Entra ID, web browsers, and enterprise authentication workflows. The research outlines over 20 distinct attack methods, emphasizing systemic weaknesses that could be exploited by attackers.

One significant flaw involves Windows 11 logging full WebAuthn assertion responses during passkey authentication. These logs, containing cryptographic signatures, can be accessed by attackers with local or delegated access, allowing them to replay assertions against endpoints lacking anti-replay validation.

Implications of Assertion Logging

The ability to harvest assertion material poses a serious threat, particularly when privileged cloud administrators use compromised systems. By exfiltrating this data, attackers can impersonate identities without needing to steal private keys. Microsoft addressed this vulnerability (CVE-2026-34348) in its July 2026 security update, which truncates signature fields in logged assertions to enhance security.

However, the risk extends beyond assertion replay. Researchers demonstrate how local malware can misuse WebAuthn APIs for deceptive authentication prompts, exploiting techniques such as prompt flooding and application identity spoofing.

Mitigation and Future Outlook

To mitigate these risks, it is crucial for organizations to apply timely security updates and enforce robust server-side replay protections. Monitoring local WebAuthn execution and requiring hardware-backed passkey attestation for high-privilege accounts are recommended practices.

Despite these vulnerabilities, passkeys, particularly those bound to hardware tokens, remain a more secure alternative to traditional passwords. Organizations are urged to strengthen their security posture by adopting comprehensive controls and continuously auditing their systems.

The ongoing research by SpecterOps and the proactive measures by Microsoft underscore the importance of vigilance and adaptation in cybersecurity strategies. As threats evolve, so must the defenses against them, ensuring the integrity and security of authentication processes.

Cyber Security News Tags:Authentication, CVE-2026-34348, Cybersecurity, MFA, Microsoft Entra ID, passkey attacks, Security, SpecterOps, WebAuthn, Windows 11

Post navigation

Previous Post: HP ThinPro Encryption Flaw Risks LUKS Key Exposure
Next Post: Anthropic Enhances Security with Claude Code Auto Mode

Related Posts

Microsoft 365 Outage Disrupts Key Business Services Microsoft 365 Outage Disrupts Key Business Services Cyber Security News
Chrome 0-Day Vulnerability Actively Exploited in Attacks by Notorious Hacker Group Chrome 0-Day Vulnerability Actively Exploited in Attacks by Notorious Hacker Group Cyber Security News
Threat Actors Leverages DeepSeek-R1 Popularity to Attack Users Running Windows Devices Threat Actors Leverages DeepSeek-R1 Popularity to Attack Users Running Windows Devices Cyber Security News
U.S. Ends Export Controls on Claude Fable 5 AI Model U.S. Ends Export Controls on Claude Fable 5 AI Model Cyber Security News
Microsoft To Depreciate VBScript In Windows Warns Developers To Adapt Their Projects Microsoft To Depreciate VBScript In Windows Warns Developers To Adapt Their Projects Cyber Security News
Top Web Application Firewalls for 2026: Expert Ranking Top Web Application Firewalls for 2026: Expert Ranking Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Anthropic Enhances Security with Claude Code Auto Mode
  • Windows 11 Vulnerabilities Expose MFA Flaws
  • HP ThinPro Encryption Flaw Risks LUKS Key Exposure
  • Gunra Ransomware Exploits VPN Vulnerabilities for Data Theft
  • China-Linked Group Unleashes StormEncryptor Ransomware

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Anthropic Enhances Security with Claude Code Auto Mode
  • Windows 11 Vulnerabilities Expose MFA Flaws
  • HP ThinPro Encryption Flaw Risks LUKS Key Exposure
  • Gunra Ransomware Exploits VPN Vulnerabilities for Data Theft
  • China-Linked Group Unleashes StormEncryptor Ransomware

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark