Microsoft has removed a key obstacle facing organizations seeking to deploy phishing-resistant multifactor authentication (MFA) by enabling certificate-based authentication (CBA) in Azure Active Directory. This comes as experts anticipate advanced phishing attacks will rise next year. “I think social engineering and MFA bypass attacks will continue to grow in 2023, where some other major service providers suffer meaningful breaches like we did this year,” Andrew Shikiar says.


More

Ars Technica: Now there’s a better way to prevent Facebook account takeovers

Facebook is joining a handful of online services—including Google, Dropbox, GitHub, and Salesforce—in supporting security…

Read More →

American Banker: Why banks should consider taking a page from Facebook on security keys

American Banker poses the question, “If Facebook brings physical security keys using FIDO authentication to…

Read More →

ComputerWeekly: Facebook ups security with FIDO two-factor authentication

ComputerWeekly reports that Facebook is upgrading the login security for its 1.79 billion users by…

Read More →