Microsoft Implements Number Matching MFA to Combat Fatigue Attacks

1 min read
Source: BleepingComputer
Microsoft Implements Number Matching MFA to Combat Fatigue Attacks
Photo: BleepingComputer
TL;DR Summary

Microsoft has started enforcing number matching in Microsoft Authenticator push notifications to combat multi-factor authentication (MFA) fatigue attacks. Cybercriminals use MFA push spam to flood targets with mobile push notifications asking them to approve attempts to log into their corporate accounts using stolen credentials. Microsoft will start enforcing number matching for Microsoft Authenticator MFA alerts to block MFA fatigue attack attempts across tenants beginning May 8, 2023. Users can manually enable number matching before Microsoft removes the admin controls.

Share this article

Reading Insights

Total Reads

0

Unique Readers

1

Time Saved

2 min

vs 3 min read

Condensed

82%

43679 words

Want the full story? Read the original article

Read on BleepingComputer