Multi-factor authentication: Difference between revisions

Content deleted Content added
OAbot (talk | contribs)
m Open access bot: url-access=subscription updated in citation with #oabot.
top: Linus did not suffer a MFA attack, as is explicitly stated in the video. Sources must be properly checked before adding to an article. Blindly trusting other Wikipedia articles is insufficient.
Tags: Mobile edit Mobile app edit Android app edit App full source
Line 130:
In 2022, [[Microsoft]] has deployed a mitigation against MFA fatigue attacks with their authenticator app.<ref>{{Cite web |last=Tung |first=Liam |title=Microsoft Authenticator gains feature to thwart spam attacks on MFA |url=https://www.zdnet.com/article/microsoft-authenticator-gains-feature-to-thwart-spam-attacks-on-mfa/ |access-date=2023-01-26 |website=[[ZDNET]] |language=en}}</ref>
 
In September 2022 [[Uber]] security was breached by a member of [[Lapsus$]] using a multi-factor fatigue attack.<ref name="techcrunch-how-do-you-stop-another-uber-attack">{{Cite news |last=Whittaker |first=Zack |date=2022-09-19 |title=How do you stop another Uber hack? |url=https://techcrunch.com/2022/09/19/how-to-fix-another-uber-breach/ |access-date=2023-08-24 |work=[[TechCrunch]]}}</ref><ref name="register-uber-explains">{{Cite news |last=Hardcastle |first=Jessica Lyons |date=2022-09-19 |title=Uber explains how it was pwned this month, points finger at Lapsus$ gang |url=https://www.theregister.com/2022/09/19/uber_admits_breach/ |access-date=2023-08-24 |work=[[The Register]]}}</ref> On March 24, 2023, YouTuber [[Linus Sebastian]] declared on the [[Linus Media Group|Linus Tech Tips]] channel on the [[YouTube]] platform that he had suffered a multi-factor authentication fatigue attack as part of a broader [[Session hijacking]] attack.<ref>{{Cite AV media |url=https://www.youtube.com/watch?v=yGXaAWbzl5A |title=My Channel Was Deleted Last Night |date=2023-03-24 |last=Linus Tech Tips |access-date=2025-02-15 |via=YouTube}}</ref> In early 2024, a small percentage of [[Apple Inc.|Apple]] consumers experienced a MFA fatigue attack that was caused by a hacker that bypassed the rate limit and [[CAPTCHA|Captcha]] on Apple’s “Forgot Password” page.
 
== Implementation ==