cvee-2025-26644

About this tag
CVE-2025-26644 is a security vulnerability affecting Windows Hello facial recognition in Windows 11. Microsoft addressed this flaw in the April 2025 update (OS Build 26100.3775), which now requires a color camera capable of capturing visible light images for facial recognition to function in low-light conditions. This change prevents unauthorized access that could occur when infrared-only cameras were used in the dark. The update enhances biometric authentication security by ensuring that facial recognition relies on visible light imagery, reducing the risk of spoofing or bypass attacks. Users with devices lacking a compatible color camera may experience reduced functionality in dark environments.
  1. Windows Hello Security Update: Facial Recognition Now Requires Color Cameras in Windows 11

    Windows Hello, Microsoft's biometric authentication system, has recently undergone a significant security enhancement that affects its functionality in low-light conditions. With the release of Windows 11 OS Build 26100.3775 in April 2025, users have observed that facial recognition no longer...