Danger – Multi Factor Authenticator Fatigue!
Being educated on cyber security basics is essential.
The recent hack of Uber shows how crucial being aware of social engineering techniques is for all of us.
The hacker who claimed to be 18 years old claimed that he was able to access Uber’s systems through an employee. Although he had the employee’s password, he was blocked by Multi Factor Authentication (MFA). He then phoned the employee claiming to be from Uber IT department. The employee was told that he should accept the MFA challenge on his phone (the constant messages asking him to verify the login). The employee complied and the criminal gained access.
Multi Factor Authenticator (MFA) Fatigue attacks are when a cyber-criminal has access to login details but is blocked from access to the account by multi-factor authentication. The criminal tries multiple logins, each of which generates a text asking for verification until the victims become tired of seeing the messages and finally accepts the notification.
This social engineering tactic has become very popular in recent attacks against well-known companies, including Twitter, MailChimp, Robinhood, and Okta.
Would you like to know more about how to protect yourself and your business?
Contact us to schedule a chat or give us a call 1300 795 105 or 0416 038 856.
Graeme Pascoe
Whenever you’re ready, here are three ways I can help you further:
1. No obligation analysis of your network
We’ll check your IT structure and advise you on ways to improve efficiency and security.
2. Free email threat scan
Find hidden malicious emails lurking in your inbox (Office 365 or other cloud-based services). Phishing attacks via legitimate-looking emails are the greatest threat to businesses today. Since the COVID-19 pandemic attacks have multiplied to an alarming level. Want to know if you are targeted?
3. Microsoft 365 demonstration
We’ll show you what Office 365 is all about (it’s not just Word, Excel, and email) and show ways in which it may improve your business processes. You may find better ways of working