How To Stop MFA Fatigue Attacks
ID: 91a1fbb5-4390-548e-a78d-b340a476b747
STIX ID: report--91a1fbb5-4390-548e-a78d-b340a476b747
Feed Name: Arctic Wolf Blog
This article explains MFA fatigue (also called prompt bombing or push bombing), a technique where an attacker with valid credentials repeatedly triggers MFA approval prompts to coerce or trick a user into approving one, enabling account takeover. It outlines the attack flow, a notable Uber incident, the relationship to credential theft, and provides seven practical mitigation recommendations including limiting notifications, using stronger authenticators, adding contextual checks, awareness training, and monitoring.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
