Back to Intel

Intel Node

MFA Prompt Bombing: Why Your Second Factor Isn't Saving You

criticaladvisory2026-05-26T10:30:00+00:00source excerpt
identity

Source excerpt · The upstream feed supplied only part of this article.Read the original source →

Multi-factor authentication (MFA) was supposed to close a critical gap in identity security. It meant that, even if an attacker possessed the account credentials, they couldn't log in without the second factor. While that logic was sound, attackers have now figured out that they don't need to steal the second factor: they just need the user to hand it over.

Read Original Source