home.social

#mfa — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #mfa, aggregated by home.social.

  1. #bostonWeekend Mon FREE CULTURE the ICA and the MFA are both free - get there early if you go, maybe take the T or, heck, its good biking weather. #boston #MFA #ICA #BostonArt #BostonFree

  2. #bostonWeekend Mon FREE CULTURE the ICA and the MFA are both free - get there early if you go, maybe take the T or, heck, its good biking weather. #boston #MFA #ICA #BostonArt #BostonFree

  3. #bostonWeekend Mon FREE CULTURE the ICA and the MFA are both free - get there early if you go, maybe take the T or, heck, its good biking weather. #boston #MFA #ICA #BostonArt #BostonFree

  4. #bostonWeekend Mon FREE CULTURE the ICA and the MFA are both free - get there early if you go, maybe take the T or, heck, its good biking weather. #boston #MFA #ICA #BostonArt #BostonFree

  5. #bostonWeekend Mon FREE CULTURE the ICA and the MFA are both free - get there early if you go, maybe take the T or, heck, its good biking weather. #boston #MFA #ICA #BostonArt #BostonFree

  6. Blackfile’s Cloud Extortion Operations Targets Organizations

    Blackfile, officially tracked as UNC6671 by Google Threat Intelligence Group, terrorized global corporate cloud environments. The threat actor leveraged human engineering and technical exploitation to compromise over a dozen companies. UNC6671’s threat model exposes a serious gap in security within corporate’s still relying on legacy MFA and weak cloud access monitoring

    Pulse ID: 6a10c2349f66a6cd67167619
    Pulse Link: otx.alienvault.com/pulse/6a10c
    Pulse Author: cryptocti
    Created: 2026-05-22 20:53:08

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Cloud #CyberSecurity #Extortion #Google #InfoSec #MFA #OTX #OpenThreatExchange #RAT #bot #cryptocti

  7. Blackfile’s Cloud Extortion Operations Targets Organizations

    Blackfile, officially tracked as UNC6671 by Google Threat Intelligence Group, terrorized global corporate cloud environments. The threat actor leveraged human engineering and technical exploitation to compromise over a dozen companies. UNC6671’s threat model exposes a serious gap in security within corporate’s still relying on legacy MFA and weak cloud access monitoring

    Pulse ID: 6a10c2349f66a6cd67167619
    Pulse Link: otx.alienvault.com/pulse/6a10c
    Pulse Author: cryptocti
    Created: 2026-05-22 20:53:08

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Cloud #CyberSecurity #Extortion #Google #InfoSec #MFA #OTX #OpenThreatExchange #RAT #bot #cryptocti

  8. Blackfile’s Cloud Extortion Operations Targets Organizations

    Blackfile, officially tracked as UNC6671 by Google Threat Intelligence Group, terrorized global corporate cloud environments. The threat actor leveraged human engineering and technical exploitation to compromise over a dozen companies. UNC6671’s threat model exposes a serious gap in security within corporate’s still relying on legacy MFA and weak cloud access monitoring

    Pulse ID: 6a10c2349f66a6cd67167619
    Pulse Link: otx.alienvault.com/pulse/6a10c
    Pulse Author: cryptocti
    Created: 2026-05-22 20:53:08

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Cloud #CyberSecurity #Extortion #Google #InfoSec #MFA #OTX #OpenThreatExchange #RAT #bot #cryptocti

  9. Blackfile’s Cloud Extortion Operations Targets Organizations

    Blackfile, officially tracked as UNC6671 by Google Threat Intelligence Group, terrorized global corporate cloud environments. The threat actor leveraged human engineering and technical exploitation to compromise over a dozen companies. UNC6671’s threat model exposes a serious gap in security within corporate’s still relying on legacy MFA and weak cloud access monitoring

    Pulse ID: 6a10c2349f66a6cd67167619
    Pulse Link: otx.alienvault.com/pulse/6a10c
    Pulse Author: cryptocti
    Created: 2026-05-22 20:53:08

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Cloud #CyberSecurity #Extortion #Google #InfoSec #MFA #OTX #OpenThreatExchange #RAT #bot #cryptocti

  10. Blackfile’s Cloud Extortion Operations Targets Organizations

    Blackfile, officially tracked as UNC6671 by Google Threat Intelligence Group, terrorized global corporate cloud environments. The threat actor leveraged human engineering and technical exploitation to compromise over a dozen companies. UNC6671’s threat model exposes a serious gap in security within corporate’s still relying on legacy MFA and weak cloud access monitoring

    Pulse ID: 6a10c2349f66a6cd67167619
    Pulse Link: otx.alienvault.com/pulse/6a10c
    Pulse Author: cryptocti
    Created: 2026-05-22 20:53:08

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Cloud #CyberSecurity #Extortion #Google #InfoSec #MFA #OTX #OpenThreatExchange #RAT #bot #cryptocti

  11. 📢🚨🎣- Another day, another phishing platform: New phishing platform is helping cybercriminals hijack Microsoft 365 accounts without passwords by bypassing using device code phishing.

    Details: hackread.com/fbi-kali365-phish

  12. 📢🚨🎣- Another day, another phishing platform: New phishing platform #Kali365 is helping cybercriminals hijack Microsoft 365 accounts without passwords by bypassing #MFA using device code phishing.

    Details: hackread.com/fbi-kali365-phish

    #CyberSecurity #Microsoft365 #Phishing #Scam #CyberAttack

  13. 📢🚨🎣- Another day, another phishing platform: New phishing platform #Kali365 is helping cybercriminals hijack Microsoft 365 accounts without passwords by bypassing #MFA using device code phishing.

    Details: hackread.com/fbi-kali365-phish

    #CyberSecurity #Microsoft365 #Phishing #Scam #CyberAttack

  14. 📢🚨🎣- Another day, another phishing platform: New phishing platform #Kali365 is helping cybercriminals hijack Microsoft 365 accounts without passwords by bypassing #MFA using device code phishing.

    Details: hackread.com/fbi-kali365-phish

    #CyberSecurity #Microsoft365 #Phishing #Scam #CyberAttack

  15. 📢🚨🎣- Another day, another phishing platform: New phishing platform #Kali365 is helping cybercriminals hijack Microsoft 365 accounts without passwords by bypassing #MFA using device code phishing.

    Details: hackread.com/fbi-kali365-phish

    #CyberSecurity #Microsoft365 #Phishing #Scam #CyberAttack

  16. Post 3/3
    This isn't new technique -- it traces to Russian state actors in mid-2024. What's new is the commodity layer. EvilTokens as a service in February 2026, 340+ organisations compromised within weeks. Kali365 in April. FBI PSA yesterday. The gap between "state-sponsored" and "Telegram subscription" is now measured in months.
    Block device code flow in Entra ID Conditional Access. That's it. It was available before Kali365 existed.
    haunted.lighthouse.co.im/artic
    #InfoSec #MFA #PhaaS

  17. Post 3/3
    This isn't new technique -- it traces to Russian state actors in mid-2024. What's new is the commodity layer. EvilTokens as a service in February 2026, 340+ organisations compromised within weeks. Kali365 in April. FBI PSA yesterday. The gap between "state-sponsored" and "Telegram subscription" is now measured in months.
    Block device code flow in Entra ID Conditional Access. That's it. It was available before Kali365 existed.
    haunted.lighthouse.co.im/artic
    #InfoSec #MFA #PhaaS

  18. Post 3/3
    This isn't new technique -- it traces to Russian state actors in mid-2024. What's new is the commodity layer. EvilTokens as a service in February 2026, 340+ organisations compromised within weeks. Kali365 in April. FBI PSA yesterday. The gap between "state-sponsored" and "Telegram subscription" is now measured in months.
    Block device code flow in Entra ID Conditional Access. That's it. It was available before Kali365 existed.
    haunted.lighthouse.co.im/artic
    #InfoSec #MFA #PhaaS

  19. Post 3/3
    This isn't new technique -- it traces to Russian state actors in mid-2024. What's new is the commodity layer. EvilTokens as a service in February 2026, 340+ organisations compromised within weeks. Kali365 in April. FBI PSA yesterday. The gap between "state-sponsored" and "Telegram subscription" is now measured in months.
    Block device code flow in Entra ID Conditional Access. That's it. It was available before Kali365 existed.
    haunted.lighthouse.co.im/artic
    #InfoSec #MFA #PhaaS

  20. 🚩 HIGH severity: CVE-2026-46473 in Authen::TOTP (<0.1.1, Perl) — secrets generated with rand are predictable, weakening TOTP security. Upgrade to 0.1.1+ when possible. More: radar.offseq.com/threat/cve-20 #OffSeq #Vulnerability #Perl #MFA #CVE202646473

  21. Les mots de passe seuls ne suffisent plus.
    Avec une solution IAM comme #Keycloak, il devient possible de :

    ➡️ intégrer la #MFA
    ➡️ supporter les passkeys via WebAuthn
    ➡️ centraliser l’authentification
    ➡️ appliquer des politiques d’accès cohérentes

    👉 explore.orbeet.io/r/j6B

  22. The 2FA you trust is a screen door in a hurricane. In 2026, if you aren't using phishing-resistant hardware, you’re just waiting for your session to be hijacked. Stop being a soft target. 👊🛡️

    #CyberSecurity #MFA #ZeroTrust

    bdking71.wordpress.com/2026/05

  23. If you're focused on "defending against #Mythos", you're worried about the wrong problem.

    If you're focused on "protecting against #AI hackers", you're worried about the wrong problem.

    As described recently by #infosec expert and IANS Faculty member Davi Ottenheimer:

    "Your patching SLA, #EDR coverage, network segmentation, #MFA enforcement, and asset inventory are still the things that determine your exposure. In particular, using AI to scan code for flaws internally is a leveling move, and using AI to remediate code by rearchitecting it away from flaws is an uplift. An AI-assisted offensive tool does not change that calculus because it moves the attacker marginally closer to the ceiling of what a competent human red team already does against targets that have no defenses anyway."

    And I absolutely love this quote:

    "[The Mythos paper] is the worst form of FUD: anchor to something true, then extend the credibility to something unproven. The emergency is built on the myth, and some of the most credentialed people in the industry just co-signed it without checking the facts."

    How about, let's work on getting the basics right.

    References:

  24. FlowerStorm unleashes the KrakVM: PhaaS operators turn to VM-based obfuscation

    FlowerStorm is a widely known Phishing-As-A-Service (PhaaS) attack kit that has been active since at least mid-2024, increasingly in large scale campaigns. FlowerStorm performs targeted, complex collection of a victim’s credentials, including the management of multi-factor authentication (MFA).

    Pulse ID: 6a0b5e378b3635e94b3b7656
    Pulse Link: otx.alienvault.com/pulse/6a0b5
    Pulse Author: AlienVault
    Created: 2026-05-18 18:45:09

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #CyberSecurity #InfoSec #MFA #OTX #OpenThreatExchange #Phishing #RAT #bot #AlienVault

  25. FlowerStorm unleashes the KrakVM: PhaaS operators turn to VM-based obfuscation

    FlowerStorm is a widely known Phishing-As-A-Service (PhaaS) attack kit that has been active since at least mid-2024, increasingly in large scale campaigns. FlowerStorm performs targeted, complex collection of a victim’s credentials, including the management of multi-factor authentication (MFA).

    Pulse ID: 6a0b5e378b3635e94b3b7656
    Pulse Link: otx.alienvault.com/pulse/6a0b5
    Pulse Author: AlienVault
    Created: 2026-05-18 18:45:09

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #CyberSecurity #InfoSec #MFA #OTX #OpenThreatExchange #Phishing #RAT #bot #AlienVault

  26. FlowerStorm unleashes the KrakVM: PhaaS operators turn to VM-based obfuscation

    FlowerStorm is a widely known Phishing-As-A-Service (PhaaS) attack kit that has been active since at least mid-2024, increasingly in large scale campaigns. FlowerStorm performs targeted, complex collection of a victim’s credentials, including the management of multi-factor authentication (MFA).

    Pulse ID: 6a0b5e378b3635e94b3b7656
    Pulse Link: otx.alienvault.com/pulse/6a0b5
    Pulse Author: AlienVault
    Created: 2026-05-18 18:45:09

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #CyberSecurity #InfoSec #MFA #OTX #OpenThreatExchange #Phishing #RAT #bot #AlienVault

  27. FlowerStorm unleashes the KrakVM: PhaaS operators turn to VM-based obfuscation

    FlowerStorm is a widely known Phishing-As-A-Service (PhaaS) attack kit that has been active since at least mid-2024, increasingly in large scale campaigns. FlowerStorm performs targeted, complex collection of a victim’s credentials, including the management of multi-factor authentication (MFA).

    Pulse ID: 6a0b5e378b3635e94b3b7656
    Pulse Link: otx.alienvault.com/pulse/6a0b5
    Pulse Author: AlienVault
    Created: 2026-05-18 18:45:09

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #CyberSecurity #InfoSec #MFA #OTX #OpenThreatExchange #Phishing #RAT #bot #AlienVault

  28. FlowerStorm unleashes the KrakVM: PhaaS operators turn to VM-based obfuscation

    FlowerStorm is a widely known Phishing-As-A-Service (PhaaS) attack kit that has been active since at least mid-2024, increasingly in large scale campaigns. FlowerStorm performs targeted, complex collection of a victim’s credentials, including the management of multi-factor authentication (MFA).

    Pulse ID: 6a0b5e378b3635e94b3b7656
    Pulse Link: otx.alienvault.com/pulse/6a0b5
    Pulse Author: AlienVault
    Created: 2026-05-18 18:45:09

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #CyberSecurity #InfoSec #MFA #OTX #OpenThreatExchange #Phishing #RAT #bot #AlienVault

  29. #MicrosoftAuthenticator: Kritische #Sicherheitslücke ermöglicht Token-Diebstahl
    heise.de/news/Microsoft-Authen

    Ich habe das auch mal auf meinem Artikel "Wie man eine vertrauenswürdige Authentifizierungs-App auswählt" karl-voit.at/2023/03/05/TOTP-A dazugenommen.

    Wenn man von dem Vorfall Generelles ableiten möchte, bleiben eigentlich nur noch Hardware-Tokens für #FIDO2 übrig, wenn man #Phishing ausschließen möchte.

    Sogar #Passkeys helfen leider nicht (mehr): karl-voit.at/FIDO2-vs-Passkeys/

    #Authenticator #TOTP #FIDO2 #publicvoit #20230304_TOTPAuswahl #MFA #2FA #20241005_FIDO2VsPasskeys #Authentifizierung #Sicherheit

  30. #MicrosoftAuthenticator: Kritische #Sicherheitslücke ermöglicht Token-Diebstahl
    heise.de/news/Microsoft-Authen

    Ich habe das auch mal auf meinem Artikel "Wie man eine vertrauenswürdige Authentifizierungs-App auswählt" karl-voit.at/2023/03/05/TOTP-A dazugenommen.

    Wenn man von dem Vorfall Generelles ableiten möchte, bleiben eigentlich nur noch Hardware-Tokens für #FIDO2 übrig, wenn man #Phishing ausschließen möchte.

    Sogar #Passkeys helfen leider nicht (mehr): karl-voit.at/FIDO2-vs-Passkeys/

    #Authenticator #TOTP #FIDO2 #publicvoit #20230304_TOTPAuswahl #MFA #2FA #20241005_FIDO2VsPasskeys #Authentifizierung #Sicherheit

  31. #MicrosoftAuthenticator: Kritische #Sicherheitslücke ermöglicht Token-Diebstahl
    heise.de/news/Microsoft-Authen

    Ich habe das auch mal auf meinem Artikel "Wie man eine vertrauenswürdige Authentifizierungs-App auswählt" karl-voit.at/2023/03/05/TOTP-A dazugenommen.

    Wenn man von dem Vorfall Generelles ableiten möchte, bleiben eigentlich nur noch Hardware-Tokens für #FIDO2 übrig, wenn man #Phishing ausschließen möchte.

    Sogar #Passkeys helfen leider nicht (mehr): karl-voit.at/FIDO2-vs-Passkeys/

    #Authenticator #TOTP #FIDO2 #publicvoit #20230304_TOTPAuswahl #MFA #2FA #20241005_FIDO2VsPasskeys #Authentifizierung #Sicherheit

  32. #MicrosoftAuthenticator: Kritische #Sicherheitslücke ermöglicht Token-Diebstahl
    heise.de/news/Microsoft-Authen

    Ich habe das auch mal auf meinem Artikel "Wie man eine vertrauenswürdige Authentifizierungs-App auswählt" karl-voit.at/2023/03/05/TOTP-A dazugenommen.

    Wenn man von dem Vorfall Generelles ableiten möchte, bleiben eigentlich nur noch Hardware-Tokens für #FIDO2 übrig, wenn man #Phishing ausschließen möchte.

    Sogar #Passkeys helfen leider nicht (mehr): karl-voit.at/FIDO2-vs-Passkeys/

    #Authenticator #TOTP #FIDO2 #publicvoit #20230304_TOTPAuswahl #MFA #2FA #20241005_FIDO2VsPasskeys #Authentifizierung #Sicherheit

  33. #MicrosoftAuthenticator: Kritische #Sicherheitslücke ermöglicht Token-Diebstahl
    heise.de/news/Microsoft-Authen

    Ich habe das auch mal auf meinem Artikel "Wie man eine vertrauenswürdige Authentifizierungs-App auswählt" karl-voit.at/2023/03/05/TOTP-A dazugenommen.

    Wenn man von dem Vorfall Generelles ableiten möchte, bleiben eigentlich nur noch Hardware-Tokens für #FIDO2 übrig, wenn man #Phishing ausschließen möchte.

    Sogar #Passkeys helfen leider nicht (mehr): karl-voit.at/FIDO2-vs-Passkeys/

    #Authenticator #TOTP #FIDO2 #publicvoit #20230304_TOTPAuswahl #MFA #2FA #20241005_FIDO2VsPasskeys #Authentifizierung #Sicherheit

  34. [ Blog ] Enable authentication in Omnissa True SSO

    To enforce the login process, FIDO2 authentication adds an additional layer of security, enabling a robust authentication process.

    Leveraging authentication methods and Omnissa Horizon True SSO capabilities enhances the security of the VDI infrastructure against unwanted access.

     
    Configure rviv.ly/T231Ka