Home > Products > Windows Passwords > Windows Password Recovery > Screenshots > Forensic tools > Windows Hello > Biometric databases
Biometric databases and digital IDs
05.10.2023
Wireless Password Recovery v6.8.5
Minor update and bug fix
04.10.2023
Reset Windows Password v13.2
A new feature for removing junk files and cleaning up registry files.
20.09.2023
Windows Password Recovery v15.3.0
Windows Credentials Explorer
05.06.2023
Reset Windows Password v13.1
Forensic tools to analyze Remote Desktop activity in Windows

Articles and video

You may find it helpful to read our articles on Windows security and password recovery examples. Video section contains a number of movies about our programs in action

Windows Password Recovery - Windows Hello biometric databases


Biometric databases contain digital identities used to authenticate a certain user in Windows Hello system. Those identities are fingerprints, 3d-faces, voice or iris.
 

Setting Windows directory
Windows Hello biometric databases - setting Windows directory

You should set the Windows directory of the target system first. This could be the Windows directory of your current or of any external operating system.

 

Selecting a biometric database
Windows Hello biometric databases - selecting a database

To decrypt a database, just double-click it in the list.


 

Decrypted biometric database
Windows Hello biometric databases - decrypted digital identities

The decrypted database contains found and decrypted digital identities, like fingerprints, 3d-faces, etc. For example, if a user has set 3 fingerprints previously, the fingerprints should be decrypted and outputted right of the user's name. Just like in the picture above.

You can save the digital IDs for further analysis

Despite the Microsoft assertion of extremely security, the digital IDs are badly protected against substitution (unless a TPM device is used) and can be easily migrated or copied from one PC to another. For example, you can create your own fingerprint, copy it to another PC into another user account. Then you can simply logon into the alien account using your own fingerprint. Because of the serious nature of this vulnerability that compromises the whole system security, the digital IDs migrating function was disabled in the current version of the program.