PoisonSeed Attack Downgrades FIDO2 MFA Using Novel Phishing Tactics

1 min read
Source: BleepingComputer
PoisonSeed Attack Downgrades FIDO2 MFA Using Novel Phishing Tactics
Photo: BleepingComputer
TL;DR Summary

PoisonSeed threat actors are bypassing FIDO2 security keys by exploiting the cross-device sign-in feature in WebAuthn, tricking users into approving login requests from fake portals. This attack does not exploit a flaw in FIDO2 but abuses a legitimate feature, prompting organizations to implement additional security measures such as geographic restrictions and Bluetooth authentication. The attack highlights evolving methods to circumvent phishing-resistant authentication systems.

Share this article

Reading Insights

Total Reads

0

Unique Readers

1

Time Saved

2 min

vs 3 min read

Condensed

88%

50563 words

Want the full story? Read the original article

Read on BleepingComputer