
Microsoft's Authenticator now uses number matching to combat MFA fatigue attacks.
Microsoft is introducing a number-matching feature in its Authenticator app to combat MFA fatigue, a social engineering tactic that overwhelms users with push notifications asking for login approval. The feature adds a one-time code element to the push notification approach, requiring users to enter another number to complete the login process. The number matching feature will be automatically enabled for all push notifications in Authenticator, and users will not be able to opt out of the feature. The change will be deployed starting this week.

