Back to Intel

Intel Node

Phishing and MFA exploitation: Targeting the keys to the kingdom

lowadvisory2026-04-21T12:00:08+00:00source excerpt
tradecraftidentityemail

Source excerpt · The upstream feed supplied only part of this article.Read the original source →

In 2025, attackers increasingly targeted weaknesses in multi-factor authentication (MFA) workflows, and phishing attacks leveraged valid, compromised credentials to launch lures from trusted accounts. The trends focused entirely on trust, or the lack thereof, in everyday business operations.

In 2025, attackers increasingly targeted weaknesses in multi-factor authentication (MFA) workflows, and phishing attacks leveraged valid, compromised credentials to launch lures from trusted accounts. The trends focused entirely on trust, or the lack thereof, in everyday business operations. Phishing In 2025, phishing attacks were used for initial access in 40% of incidents, maintaining their prevalence.

Attackers ramped up cascaded phishing campaigns, where attackers leveraged the trust of the initial compromised account to create specialized phishing attempts, within the network and out of it, aimed at trusted partners and third parties . Email composition trends The content of phishing emails changed somewhat.

Read Original Source