Big Data

Hackers are using this new phishing technique to bypass MFA



Microsoft has warned that a threat group known as Storm-2372 has altered its tactics using a specific ‘device code phishing’ technique to bypass multi-factor authentication (MFA) and steal access tokens.

The report states that Storm-2372, which it links to Russia with ‘medium confidence’, has been conducting an active and successful device code phishing campaign since August 2024.



READ SOURCE

This website uses cookies. By continuing to use this site, you accept our use of cookies.