logo

How We Added WebAuthn to a Browser-Based RDP Client

ID: 8bb0f419-3d70-57a5-a7a9-de08783a1e5f

STIX ID: report--8bb0f419-3d70-57a5-a7a9-de08783a1e5f

Feed Name: Palo Alto Networks Unit 42

Date Published: 2026-07-02

Date Updated: 2026-07-23

Author: Daniel Prizmant

...
...

This post describes how a team implemented WebAuthn redirection for RDP by reverse‑engineering Microsoft’s mstsc behavior and building a custom Chromium extension API and DVC plugin to handle clientDataHash-only requests; it documents protocol gaps, Windows-specific behavior, and subsequent specification updates and FreeRDP adoption.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.