#mfa — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #mfa, aggregated by home.social.
-
Watch out for this Phishing attack on Microsoft Accounts!
I got ping'd by one of these last night. https://www.howtogeek.com/kali365-phishing-service-hijacks-microsoft-365-accounts/ #Phishing #Hack #Security #OnlineSecurity #Microsoft #MFA #Microsoft365 #OneDrive #Alert
-
Watch out for this Phishing attack on Microsoft Accounts!
I got ping'd by one of these last night. https://www.howtogeek.com/kali365-phishing-service-hijacks-microsoft-365-accounts/ #Phishing #Hack #Security #OnlineSecurity #Microsoft #MFA #Microsoft365 #OneDrive #Alert
-
Watch out for this Phishing attack on Microsoft Accounts!
I got ping'd by one of these last night. https://www.howtogeek.com/kali365-phishing-service-hijacks-microsoft-365-accounts/ #Phishing #Hack #Security #OnlineSecurity #Microsoft #MFA #Microsoft365 #OneDrive #Alert
-
Watch out for this Phishing attack on Microsoft Accounts!
I got ping'd by one of these last night. https://www.howtogeek.com/kali365-phishing-service-hijacks-microsoft-365-accounts/ #Phishing #Hack #Security #OnlineSecurity #Microsoft #MFA #Microsoft365 #OneDrive #Alert
-
Watch out for this Phishing attack on Microsoft Accounts!
I got ping'd by one of these last night. https://www.howtogeek.com/kali365-phishing-service-hijacks-microsoft-365-accounts/ #Phishing #Hack #Security #OnlineSecurity #Microsoft #MFA #Microsoft365 #OneDrive #Alert
-
https://www.europesays.com/be-nl/70025/ Nieuw phishingplatform kaapt Microsoft 365-accounts zonder wachtwoord #BE #België #Belgium #cyberaanval #cybersecurity #FBI #Kali365 #MFA #Microsoft365 #PhaaS #Phishing #Science #ScienceAndTechnology #ScienceAndTechnology #Technologie #Technology #Wetenschap #WetenschapEnTechnologie #WetenschapTechnologie
-
Kali365-Phishing-Dienst kompromittiert Microsoft 365-Konten durch Umgehung von MFA
Mehr: https://maniabel.work/archiv/1660
#Kali365, #Phishing #MFA #Microsoft365 #OAuth-Token #phishing-as-a-service #PhaaS
#up2date #BeDiS -
Kali365-Phishing-Dienst kompromittiert Microsoft 365-Konten durch Umgehung von MFA
Mehr: https://maniabel.work/archiv/1660
#Kali365, #Phishing #MFA #Microsoft365 #OAuth-Token #phishing-as-a-service #PhaaS
#up2date #BeDiS -
Kali365-Phishing-Dienst kompromittiert Microsoft 365-Konten durch Umgehung von MFA
Mehr: https://maniabel.work/archiv/1660
#Kali365, #Phishing #MFA #Microsoft365 #OAuth-Token #phishing-as-a-service #PhaaS
#up2date #BeDiS -
Kali365-Phishing-Dienst kompromittiert Microsoft 365-Konten durch Umgehung von MFA
Mehr: https://maniabel.work/archiv/1660
#Kali365, #Phishing #MFA #Microsoft365 #OAuth-Token #phishing-as-a-service #PhaaS
#up2date #BeDiS -
Kali365-Phishing-Dienst kompromittiert Microsoft 365-Konten durch Umgehung von MFA
Mehr: https://maniabel.work/archiv/1660
#Kali365, #Phishing #MFA #Microsoft365 #OAuth-Token #phishing-as-a-service #PhaaS
#up2date #BeDiS -
#bostonWeekend Mon FREE CULTURE the ICA and the MFA are both free - get there early if you go, maybe take the T or, heck, its good biking weather. #boston #MFA #ICA #BostonArt #BostonFree
-
#bostonWeekend Mon FREE CULTURE the ICA and the MFA are both free - get there early if you go, maybe take the T or, heck, its good biking weather. #boston #MFA #ICA #BostonArt #BostonFree
-
#bostonWeekend Mon FREE CULTURE the ICA and the MFA are both free - get there early if you go, maybe take the T or, heck, its good biking weather. #boston #MFA #ICA #BostonArt #BostonFree
-
#bostonWeekend Mon FREE CULTURE the ICA and the MFA are both free - get there early if you go, maybe take the T or, heck, its good biking weather. #boston #MFA #ICA #BostonArt #BostonFree
-
#bostonWeekend Mon FREE CULTURE the ICA and the MFA are both free - get there early if you go, maybe take the T or, heck, its good biking weather. #boston #MFA #ICA #BostonArt #BostonFree
-
Blackfile’s Cloud Extortion Operations Targets Organizations
Blackfile, officially tracked as UNC6671 by Google Threat Intelligence Group, terrorized global corporate cloud environments. The threat actor leveraged human engineering and technical exploitation to compromise over a dozen companies. UNC6671’s threat model exposes a serious gap in security within corporate’s still relying on legacy MFA and weak cloud access monitoring
Pulse ID: 6a10c2349f66a6cd67167619
Pulse Link: https://otx.alienvault.com/pulse/6a10c2349f66a6cd67167619
Pulse Author: cryptocti
Created: 2026-05-22 20:53:08Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Cloud #CyberSecurity #Extortion #Google #InfoSec #MFA #OTX #OpenThreatExchange #RAT #bot #cryptocti
-
Blackfile’s Cloud Extortion Operations Targets Organizations
Blackfile, officially tracked as UNC6671 by Google Threat Intelligence Group, terrorized global corporate cloud environments. The threat actor leveraged human engineering and technical exploitation to compromise over a dozen companies. UNC6671’s threat model exposes a serious gap in security within corporate’s still relying on legacy MFA and weak cloud access monitoring
Pulse ID: 6a10c2349f66a6cd67167619
Pulse Link: https://otx.alienvault.com/pulse/6a10c2349f66a6cd67167619
Pulse Author: cryptocti
Created: 2026-05-22 20:53:08Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Cloud #CyberSecurity #Extortion #Google #InfoSec #MFA #OTX #OpenThreatExchange #RAT #bot #cryptocti
-
Blackfile’s Cloud Extortion Operations Targets Organizations
Blackfile, officially tracked as UNC6671 by Google Threat Intelligence Group, terrorized global corporate cloud environments. The threat actor leveraged human engineering and technical exploitation to compromise over a dozen companies. UNC6671’s threat model exposes a serious gap in security within corporate’s still relying on legacy MFA and weak cloud access monitoring
Pulse ID: 6a10c2349f66a6cd67167619
Pulse Link: https://otx.alienvault.com/pulse/6a10c2349f66a6cd67167619
Pulse Author: cryptocti
Created: 2026-05-22 20:53:08Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Cloud #CyberSecurity #Extortion #Google #InfoSec #MFA #OTX #OpenThreatExchange #RAT #bot #cryptocti
-
Blackfile’s Cloud Extortion Operations Targets Organizations
Blackfile, officially tracked as UNC6671 by Google Threat Intelligence Group, terrorized global corporate cloud environments. The threat actor leveraged human engineering and technical exploitation to compromise over a dozen companies. UNC6671’s threat model exposes a serious gap in security within corporate’s still relying on legacy MFA and weak cloud access monitoring
Pulse ID: 6a10c2349f66a6cd67167619
Pulse Link: https://otx.alienvault.com/pulse/6a10c2349f66a6cd67167619
Pulse Author: cryptocti
Created: 2026-05-22 20:53:08Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Cloud #CyberSecurity #Extortion #Google #InfoSec #MFA #OTX #OpenThreatExchange #RAT #bot #cryptocti
-
Blackfile’s Cloud Extortion Operations Targets Organizations
Blackfile, officially tracked as UNC6671 by Google Threat Intelligence Group, terrorized global corporate cloud environments. The threat actor leveraged human engineering and technical exploitation to compromise over a dozen companies. UNC6671’s threat model exposes a serious gap in security within corporate’s still relying on legacy MFA and weak cloud access monitoring
Pulse ID: 6a10c2349f66a6cd67167619
Pulse Link: https://otx.alienvault.com/pulse/6a10c2349f66a6cd67167619
Pulse Author: cryptocti
Created: 2026-05-22 20:53:08Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Cloud #CyberSecurity #Extortion #Google #InfoSec #MFA #OTX #OpenThreatExchange #RAT #bot #cryptocti
-
📢🚨🎣- Another day, another phishing platform: New phishing platform #Kali365 is helping cybercriminals hijack Microsoft 365 accounts without passwords by bypassing #MFA using device code phishing.
Details: https://hackread.com/fbi-kali365-phishing-service-microsoft-365-account/
-
📢🚨🎣- Another day, another phishing platform: New phishing platform #Kali365 is helping cybercriminals hijack Microsoft 365 accounts without passwords by bypassing #MFA using device code phishing.
Details: https://hackread.com/fbi-kali365-phishing-service-microsoft-365-account/
-
📢🚨🎣- Another day, another phishing platform: New phishing platform #Kali365 is helping cybercriminals hijack Microsoft 365 accounts without passwords by bypassing #MFA using device code phishing.
Details: https://hackread.com/fbi-kali365-phishing-service-microsoft-365-account/
-
📢🚨🎣- Another day, another phishing platform: New phishing platform #Kali365 is helping cybercriminals hijack Microsoft 365 accounts without passwords by bypassing #MFA using device code phishing.
Details: https://hackread.com/fbi-kali365-phishing-service-microsoft-365-account/
-
📢🚨🎣- Another day, another phishing platform: New phishing platform #Kali365 is helping cybercriminals hijack Microsoft 365 accounts without passwords by bypassing #MFA using device code phishing.
Details: https://hackread.com/fbi-kali365-phishing-service-microsoft-365-account/
-
Post 3/3
This isn't new technique -- it traces to Russian state actors in mid-2024. What's new is the commodity layer. EvilTokens as a service in February 2026, 340+ organisations compromised within weeks. Kali365 in April. FBI PSA yesterday. The gap between "state-sponsored" and "Telegram subscription" is now measured in months.
Block device code flow in Entra ID Conditional Access. That's it. It was available before Kali365 existed.
https://haunted.lighthouse.co.im/articles/the-mfa-that-wasnt/
#InfoSec #MFA #PhaaS -
Post 3/3
This isn't new technique -- it traces to Russian state actors in mid-2024. What's new is the commodity layer. EvilTokens as a service in February 2026, 340+ organisations compromised within weeks. Kali365 in April. FBI PSA yesterday. The gap between "state-sponsored" and "Telegram subscription" is now measured in months.
Block device code flow in Entra ID Conditional Access. That's it. It was available before Kali365 existed.
https://haunted.lighthouse.co.im/articles/the-mfa-that-wasnt/
#InfoSec #MFA #PhaaS -
Post 3/3
This isn't new technique -- it traces to Russian state actors in mid-2024. What's new is the commodity layer. EvilTokens as a service in February 2026, 340+ organisations compromised within weeks. Kali365 in April. FBI PSA yesterday. The gap between "state-sponsored" and "Telegram subscription" is now measured in months.
Block device code flow in Entra ID Conditional Access. That's it. It was available before Kali365 existed.
https://haunted.lighthouse.co.im/articles/the-mfa-that-wasnt/
#InfoSec #MFA #PhaaS -
Post 3/3
This isn't new technique -- it traces to Russian state actors in mid-2024. What's new is the commodity layer. EvilTokens as a service in February 2026, 340+ organisations compromised within weeks. Kali365 in April. FBI PSA yesterday. The gap between "state-sponsored" and "Telegram subscription" is now measured in months.
Block device code flow in Entra ID Conditional Access. That's it. It was available before Kali365 existed.
https://haunted.lighthouse.co.im/articles/the-mfa-that-wasnt/
#InfoSec #MFA #PhaaS -
🚩 HIGH severity: CVE-2026-46473 in Authen::TOTP (<0.1.1, Perl) — secrets generated with rand are predictable, weakening TOTP security. Upgrade to 0.1.1+ when possible. More: https://radar.offseq.com/threat/cve-2026-46473-cwe-331-insufficient-entropy-in-tch-3d3628d8 #OffSeq #Vulnerability #Perl #MFA #CVE202646473
-
Hackers bypass #SonicWall #VPN #MFA due to incomplete patching
-
“Microsoft Is Eliminating SMS Codes for Two-Factor Authentication”
No date for this yet. But get ready!
#mfa #sms #microsoft #infosec #Passkeys #2fa #webauthn
https://lifehacker.com/tech/microsoft-is-eliminating-sms-codes-for-2fa
-
The 2FA you trust is a screen door in a hurricane. In 2026, if you aren't using phishing-resistant hardware, you’re just waiting for your session to be hijacked. Stop being a soft target. 👊🛡️
#CyberSecurity #MFA #ZeroTrust
https://bdking71.wordpress.com/2026/05/19/why-your-two-factor-security-is-a-paper-shield-in-2026/
-
If you're focused on "defending against #Mythos", you're worried about the wrong problem.
If you're focused on "protecting against #AI hackers", you're worried about the wrong problem.
As described recently by #infosec expert and IANS Faculty member Davi Ottenheimer:
"Your patching SLA, #EDR coverage, network segmentation, #MFA enforcement, and asset inventory are still the things that determine your exposure. In particular, using AI to scan code for flaws internally is a leveling move, and using AI to remediate code by rearchitecting it away from flaws is an uplift. An AI-assisted offensive tool does not change that calculus because it moves the attacker marginally closer to the ceiling of what a competent human red team already does against targets that have no defenses anyway."
And I absolutely love this quote:
"[The Mythos paper] is the worst form of FUD: anchor to something true, then extend the credibility to something unproven. The emergency is built on the myth, and some of the most credentialed people in the industry just co-signed it without checking the facts."
How about, let's work on getting the basics right.
References:
-
FlowerStorm unleashes the KrakVM: PhaaS operators turn to VM-based obfuscation
FlowerStorm is a widely known Phishing-As-A-Service (PhaaS) attack kit that has been active since at least mid-2024, increasingly in large scale campaigns. FlowerStorm performs targeted, complex collection of a victim’s credentials, including the management of multi-factor authentication (MFA).
Pulse ID: 6a0b5e378b3635e94b3b7656
Pulse Link: https://otx.alienvault.com/pulse/6a0b5e378b3635e94b3b7656
Pulse Author: AlienVault
Created: 2026-05-18 18:45:09Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #InfoSec #MFA #OTX #OpenThreatExchange #Phishing #RAT #bot #AlienVault
-
FlowerStorm unleashes the KrakVM: PhaaS operators turn to VM-based obfuscation
FlowerStorm is a widely known Phishing-As-A-Service (PhaaS) attack kit that has been active since at least mid-2024, increasingly in large scale campaigns. FlowerStorm performs targeted, complex collection of a victim’s credentials, including the management of multi-factor authentication (MFA).
Pulse ID: 6a0b5e378b3635e94b3b7656
Pulse Link: https://otx.alienvault.com/pulse/6a0b5e378b3635e94b3b7656
Pulse Author: AlienVault
Created: 2026-05-18 18:45:09Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #InfoSec #MFA #OTX #OpenThreatExchange #Phishing #RAT #bot #AlienVault
-
FlowerStorm unleashes the KrakVM: PhaaS operators turn to VM-based obfuscation
FlowerStorm is a widely known Phishing-As-A-Service (PhaaS) attack kit that has been active since at least mid-2024, increasingly in large scale campaigns. FlowerStorm performs targeted, complex collection of a victim’s credentials, including the management of multi-factor authentication (MFA).
Pulse ID: 6a0b5e378b3635e94b3b7656
Pulse Link: https://otx.alienvault.com/pulse/6a0b5e378b3635e94b3b7656
Pulse Author: AlienVault
Created: 2026-05-18 18:45:09Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #InfoSec #MFA #OTX #OpenThreatExchange #Phishing #RAT #bot #AlienVault
-
FlowerStorm unleashes the KrakVM: PhaaS operators turn to VM-based obfuscation
FlowerStorm is a widely known Phishing-As-A-Service (PhaaS) attack kit that has been active since at least mid-2024, increasingly in large scale campaigns. FlowerStorm performs targeted, complex collection of a victim’s credentials, including the management of multi-factor authentication (MFA).
Pulse ID: 6a0b5e378b3635e94b3b7656
Pulse Link: https://otx.alienvault.com/pulse/6a0b5e378b3635e94b3b7656
Pulse Author: AlienVault
Created: 2026-05-18 18:45:09Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #InfoSec #MFA #OTX #OpenThreatExchange #Phishing #RAT #bot #AlienVault
-
FlowerStorm unleashes the KrakVM: PhaaS operators turn to VM-based obfuscation
FlowerStorm is a widely known Phishing-As-A-Service (PhaaS) attack kit that has been active since at least mid-2024, increasingly in large scale campaigns. FlowerStorm performs targeted, complex collection of a victim’s credentials, including the management of multi-factor authentication (MFA).
Pulse ID: 6a0b5e378b3635e94b3b7656
Pulse Link: https://otx.alienvault.com/pulse/6a0b5e378b3635e94b3b7656
Pulse Author: AlienVault
Created: 2026-05-18 18:45:09Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #InfoSec #MFA #OTX #OpenThreatExchange #Phishing #RAT #bot #AlienVault
-
#MicrosoftAuthenticator: Kritische #Sicherheitslücke ermöglicht Token-Diebstahl
https://www.heise.de/news/Microsoft-Authenticator-Kritische-Sicherheitsluecke-ermoeglicht-Token-Diebstahl-11296717.htmlIch habe das auch mal auf meinem Artikel "Wie man eine vertrauenswürdige Authentifizierungs-App auswählt" https://karl-voit.at/2023/03/05/TOTP-Auswahl/ dazugenommen.
Wenn man von dem Vorfall Generelles ableiten möchte, bleiben eigentlich nur noch Hardware-Tokens für #FIDO2 übrig, wenn man #Phishing ausschließen möchte.
Sogar #Passkeys helfen leider nicht (mehr): https://karl-voit.at/FIDO2-vs-Passkeys/
#Authenticator #TOTP #FIDO2 #publicvoit #20230304_TOTPAuswahl #MFA #2FA #20241005_FIDO2VsPasskeys #Authentifizierung #Sicherheit
-
#MicrosoftAuthenticator: Kritische #Sicherheitslücke ermöglicht Token-Diebstahl
https://www.heise.de/news/Microsoft-Authenticator-Kritische-Sicherheitsluecke-ermoeglicht-Token-Diebstahl-11296717.htmlIch habe das auch mal auf meinem Artikel "Wie man eine vertrauenswürdige Authentifizierungs-App auswählt" https://karl-voit.at/2023/03/05/TOTP-Auswahl/ dazugenommen.
Wenn man von dem Vorfall Generelles ableiten möchte, bleiben eigentlich nur noch Hardware-Tokens für #FIDO2 übrig, wenn man #Phishing ausschließen möchte.
Sogar #Passkeys helfen leider nicht (mehr): https://karl-voit.at/FIDO2-vs-Passkeys/
#Authenticator #TOTP #FIDO2 #publicvoit #20230304_TOTPAuswahl #MFA #2FA #20241005_FIDO2VsPasskeys #Authentifizierung #Sicherheit
-
#MicrosoftAuthenticator: Kritische #Sicherheitslücke ermöglicht Token-Diebstahl
https://www.heise.de/news/Microsoft-Authenticator-Kritische-Sicherheitsluecke-ermoeglicht-Token-Diebstahl-11296717.htmlIch habe das auch mal auf meinem Artikel "Wie man eine vertrauenswürdige Authentifizierungs-App auswählt" https://karl-voit.at/2023/03/05/TOTP-Auswahl/ dazugenommen.
Wenn man von dem Vorfall Generelles ableiten möchte, bleiben eigentlich nur noch Hardware-Tokens für #FIDO2 übrig, wenn man #Phishing ausschließen möchte.
Sogar #Passkeys helfen leider nicht (mehr): https://karl-voit.at/FIDO2-vs-Passkeys/
#Authenticator #TOTP #FIDO2 #publicvoit #20230304_TOTPAuswahl #MFA #2FA #20241005_FIDO2VsPasskeys #Authentifizierung #Sicherheit
-
#MicrosoftAuthenticator: Kritische #Sicherheitslücke ermöglicht Token-Diebstahl
https://www.heise.de/news/Microsoft-Authenticator-Kritische-Sicherheitsluecke-ermoeglicht-Token-Diebstahl-11296717.htmlIch habe das auch mal auf meinem Artikel "Wie man eine vertrauenswürdige Authentifizierungs-App auswählt" https://karl-voit.at/2023/03/05/TOTP-Auswahl/ dazugenommen.
Wenn man von dem Vorfall Generelles ableiten möchte, bleiben eigentlich nur noch Hardware-Tokens für #FIDO2 übrig, wenn man #Phishing ausschließen möchte.
Sogar #Passkeys helfen leider nicht (mehr): https://karl-voit.at/FIDO2-vs-Passkeys/
#Authenticator #TOTP #FIDO2 #publicvoit #20230304_TOTPAuswahl #MFA #2FA #20241005_FIDO2VsPasskeys #Authentifizierung #Sicherheit
-
#MicrosoftAuthenticator: Kritische #Sicherheitslücke ermöglicht Token-Diebstahl
https://www.heise.de/news/Microsoft-Authenticator-Kritische-Sicherheitsluecke-ermoeglicht-Token-Diebstahl-11296717.htmlIch habe das auch mal auf meinem Artikel "Wie man eine vertrauenswürdige Authentifizierungs-App auswählt" https://karl-voit.at/2023/03/05/TOTP-Auswahl/ dazugenommen.
Wenn man von dem Vorfall Generelles ableiten möchte, bleiben eigentlich nur noch Hardware-Tokens für #FIDO2 übrig, wenn man #Phishing ausschließen möchte.
Sogar #Passkeys helfen leider nicht (mehr): https://karl-voit.at/FIDO2-vs-Passkeys/
#Authenticator #TOTP #FIDO2 #publicvoit #20230304_TOTPAuswahl #MFA #2FA #20241005_FIDO2VsPasskeys #Authentifizierung #Sicherheit
-
[ Blog ] Enable #FIDO2 authentication in Omnissa #Horizon True SSO
To enforce the login process, FIDO2 authentication adds an additional layer of security, enabling a robust #MFA authentication process.
Leveraging #Azure authentication methods and Omnissa Horizon True SSO capabilities enhances the security of the VDI infrastructure against unwanted access.
Configure http://rviv.ly/T231Ka #autenticazione