Read news on MFA with our app.
Read more in the app
Rogue external MFA providers can steal passwords during logins
MFA's Weakest Link: Account Recovery Is the New Attack Path
BigBear Microsoft 365 phishing service bypassed MFA at 258 organizations
Password spraying attacks surge 155x as hackers exploit MFA gaps
Microsoft admits SMS and voice MFA can’t stop AI attacks, mandates passkeys in Entra by February 2027
New phishing kits target Microsoft 365 accounts, evade MFA
MFA-optional banks leave safe doors (and accounts) wide open for thieves to pillage
Security boss thought MFA would be too much security
Webinar: How attackers bypass MFA and how defenders can respond
Microsoft fixes outage affecting MFA setup, MySignIn service
Microsoft confirms outage affecting MFA, My Sign-Ins platform
The attack dominating financial services doesn't steal passwords. It resets MFA and steals the token.
MFA verifies who logged in. It has no idea what they do next.
When attackers already have the keys, MFA is just another door to open
Fake Google Security site uses PWA app to steal credentials, MFA codes
Microsoft to enforce MFA for Microsoft 365 admin center sign-ins
ownCloud urges users to enable MFA after credential theft reports
One criminal, 50 hacked organizations, and all because MFA wasn't turned on
NIS2 compliance: How to get passwords and MFA right
Your MFA Is Costing You Millions. It Doesn't Have To.