TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

MSRC Update Guide

CVE-2026-32088 Windows Biometric Service Security Feature Bypass Vulnerability

2026-04-14 · Read original ↗

ATT&CK techniques detected

1 predictions
T1003OS Credential Dumping
48%
"cve - 2026 - 32088 windows biometric service security feature bypass vulnerability you need to enable javascript to run this app."

Summary

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Biometric Service allows an unauthorized attacker to bypass a security feature with a physical attack.