Glossary
Two-Factor Authentication (2FA)
A specific form of multi-factor authentication that requires exactly two independent verification factors, most commonly a password plus a one-time code from an app, SMS, or hardware token. It is one of the most widely deployed forms of MFA, though SMS-based 2FA is considered weaker than app-based or hardware-based methods due to SIM-swapping risk.
Recent coverage mentioning Two-Factor Authentication (2FA)
Russian Threat Clusters Target Academia and Government via Auth Abuse
Google Threat Intelligence Group tracks three Russian cyber espionage clusters abusing legitimate authentication flows and app passwords.
ShinyHunters Breaches ShipMonk: 14,000 Trezor Customers' Data Exposed
ShinyHunters group breached shipping provider ShipMonk, exposing personal data of 14,000 Trezor customers via a Metabase SQL injection vulnerability.
New JWR Phishing Framework Bypasses MFA with Live Monitoring
JWR, a new real-time phishing framework, uses WebSockets to bypass MFA and steal sensitive data via SMS lures, posing a critical threat.
JWR Phishing Framework: Real-time Data Theft via PhaaS
The JWR phishing framework, a variant of The Outsider PhaaS, harvests payment data, PII, and 2FA codes in real-time via operator-controlled sessions.
Windows Phone Link Abuse: CloudZ RAT Bypasses 2FA via SMS Interception
Hackers are deploying CloudZ RAT and its Pheno plugin to exploit Windows Phone Link, enabling 2FA bypass and SMS theft. Learn to detect and mitigate this threat.
Advertisement