Even among organisations who have implemented 2FA, only just above a quarter (27%) are rolling out FIDO-compliant hardware security keys, which offer the most advanced form of phishing protection, while others rely on more vulnerable and outdated solutions, such as mobile authentication apps (54%) and SMS one-time passcodes (47%).


More

ars Technica: Phishers who breached Twilio and targeted Cloudflare could easily get you, too

At least two security-sensitive companies—Twilio and Cloudflare—were targeted in a phishing attack by an advanced…

Read More →

TechRadar.pro: Cloudflare says it was almost fooled by a phishing attack

Cloudflare employees were recently targeted by a “sophisticated” cyberattack, and even though some fell for…

Read More →

Cloudflare: The mechanics of a sophisticated phishing scam and how we stopped it

Yesterday, August 8, 2022, Twilio shared that they’d been compromised by a targeted phishing attack. Around…

Read More →


Subscribe to the FIDO newsletter

Stay Connected, Stay Engaged

Receive the latest news, events, research and implementation guidance from the FIDO Alliance. Learn about digital identity and fast, phishing-resistant authentication with passkeys.