Tag: black hat usa
3 articles

Microsoft Defender Driver Exploited to Disable Security Software
Researchers at Check Point have uncovered a technique that exploits Microsoft Defender's own driver to disable security software, leaving Windows 7 to 11 users vulnerable to attack. This clever hack requires no external driver or software vulnerability, making it a worrying threat.

Passkey Defenses Targeted in Novel Attacks
Researchers at Black Hat USA 2026 revealed a shocking vulnerability in passkey defenses, demonstrating how attackers can bypass FIDO2 cryptography and exploit a flaw in Windows Event Logging Service (CVE-2026-34348) to defeat passkey protections. This security gap was found to allow unauthorized users to access and replay sensitive YubiKey signatures.

Flaws in AI Coding Tools Expose CI Workflow Secrets
Researchers have uncovered critical flaws in AI coding tools that can expose sensitive CI workflow secrets, allowing low-privilege code to execute and cross privilege boundaries. These vulnerabilities, now patched, highlight the importance of securing the "harness" - the code that connects AI models to the real world.