threat-intel
How We Added WebAuthn to a Browser-Based RDP Client
Medium
Summary
This Palo Alto Unit 42 article details the development of a browser-based RDP client that supports WebAuthn redirection, allowing users to utilize security keys like YubiKeys during remote sessions. The team overcame significant challenges by reverse-engineering Microsoft's undocumented Windows implementation, highlighting the limitations of existing browser APIs in handling WebAuthn protocols. This work ultimately led to a superior solution compared to traditional thick clients and aligns with emerging W3C standards for remote client data handling.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
