Research Article

Security Analysis and Bypass User Authentication Bound to Device of Windows Hello in the Wild

Figure 7

Windows Hello login phases showing the roles of the four private keys: ① enter the PIN, ② decrypt private keys, ③-❶ log in to the device with the local account, ③-❷ log in to the device with the Microsoft account, and ③-❸ log in to the application with Windows Hello.