Year in Review: Attacks on identity and MFA
ID: 3ccd42cc-d2d2-5ecc-ba93-5377e78b286e
STIX ID: report--3ccd42cc-d2d2-5ecc-ba93-5377e78b286e
Feed Name: Cisco Talos
Cisco Talos’ 2024 Year in Review spotlight highlights how identity became the pivot for attacks, with valid-account abuse leading intrusions and nearly half involving Active Directory; it details common MFA missteps (lack of enrollment, misconfigured policies) and attacker bypass methods (phishing, push fatigue, push spraying, adversary-in-the-middle), and points to a podcast featuring Cisco Duo’s Steven Leung with best-practice recommendations for deploying MFA at scale without increasing user friction.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
