Tech News
← Home  ·  All topics

Fido

1 GoKawiil brief on this topic

Attackers Bypass MFA by Targeting Help Desk Account Recovery Processes

Security researchers note that as MFA, conditional access and device trust make direct credential theft harder, attackers are shifting focus to account recovery workflows. Instead of stealing a user's second authentication factor, criminals are tricking service desk staff into resetting or reassigning it on their behalf.