Glossary
MFA
Multi-Factor Authentication — An authentication method that requires a user to present two or more independent forms of verification — something they know, something they have, or something they are — before granting access. It is one of the single most effective controls against account takeover, since a stolen password alone is no longer sufficient.
Recent coverage mentioning MFA
ClickFix Campaigns: Threat Actors Exploit Legitimate Services
Threat actors leverage social engineering in 'ClickFix' campaigns, abusing legitimate services to gain persistent access and compromise organizations.
ClearFake WebDAV Delivers Stealers & RATs to Ukrainian Gov
ClearFake WebDAV infection chain leverages Cloudflare Workers and BNB Smart Chain to deploy Amatera stealer, ZigCryptoStealer, and NetSupport Manager.
BigBear PhaaS Bypasses Microsoft 365 MFA at 258 Orgs
BigBear 2.0 PhaaS uses Evilginx2 AiTM to bypass Microsoft 365 MFA, stealing credentials and session cookies from 258 organizations.
Microsoft 365 Vishing Leads to Executive Data Theft, Extortion
A widespread threat cluster, PREY-0058, targets Microsoft 365 executives with vishing, AitM token theft, and data extortion.
Cloud Security Index 2026: Multi-Cloud Risk Analysis
Intruder analyzed cloud misconfigurations across AWS, Azure, and GCP, revealing distinct risk profiles and universal IAM challenges.
METR Suffers API Key Credential Theft, $600,000 Loss
AI model evaluator METR experienced credential theft, leading to an API key compromise and $600,000 in public AI model credit consumption.
Advertisement