Multi-Factor Authentication (MFA) - Tagged - Security Boulevard The Home of the Security Bloggers Network Thu, 28 Mar 2024 18:46:58 +0000 en-US hourly 1 https://wordpress.org/?v=6.4.3 https://securityboulevard.com/wp-content/uploads/2021/10/android-chrome-256x256-1-32x32.png Multi-Factor Authentication (MFA) - Tagged - Security Boulevard 32 32 133346385 Apple OTP FAIL: ‘MFA Bomb’ Warning — Locks Accounts, Wipes iPhones https://securityboulevard.com/2024/03/mfa-bomb-apple-otp-richixbw/ Thu, 28 Mar 2024 18:46:58 +0000 https://securityboulevard.com/?p=2013312 Multiple, unskippable notifications

Rethink different: First, fatigue frightened users with multiple modal nighttime notifications. Next, call and pretend to be Apple support.

The post Apple OTP FAIL: ‘MFA Bomb’ Warning — Locks Accounts, Wipes iPhones appeared first on Security Boulevard.

]]>
2013312
Telegram Privacy Nightmare: Don’t Opt In to P2PL https://securityboulevard.com/2024/03/telegram-privacy-nightmare-p2pl-richixbw/ Tue, 26 Mar 2024 17:29:25 +0000 https://securityboulevard.com/?p=2012982 Scary skeletons

Scary SMS shenanigans: Avoid Telegram’s new “Peer-To-Peer Login” program if you value your privacy or your cellular service.

The post Telegram Privacy Nightmare: Don’t Opt In to P2PL appeared first on Security Boulevard.

]]>
2012982
US State Government Network Breach: Ex-Employee Logins Used https://securityboulevard.com/2024/02/us-state-government-network-breach-ex-employee-logins-used/ Mon, 26 Feb 2024 07:00:58 +0000 https://tuxcare.com/?p=16227 In a recent disclosure by the U.S. Cybersecurity and Infrastructure Security Agency (CISA), a state government organization fell victim to a cyber breach facilitated by the misuse of ex-employee credentials. The US state government network breach serves as a stark reminder of the persistent threat posed by insider access to state government network security. State […]

The post US State Government Network Breach: Ex-Employee Logins Used appeared first on TuxCare.

The post US State Government Network Breach: Ex-Employee Logins Used appeared first on Security Boulevard.

]]>
2010160
APT29 Espionage Attacks: Microsoft Issues Urgent Warning https://securityboulevard.com/2024/02/apt29-espionage-attacks-microsoft-issues-urgent-warning/ Wed, 07 Feb 2024 07:00:05 +0000 https://tuxcare.com/?p=15941 In a recent announcement, Microsoft issued a warning regarding the increasing activities of APT29, a Russian state-sponsored cyber threat group. This group, notorious for its involvement in espionage attacks on Microsoft‘s systems in November 2023, has now expanded its targets, prompting Microsoft to initiate notifications to potentially affected organizations. In this blog post, we delve […]

The post APT29 Espionage Attacks: Microsoft Issues Urgent Warning appeared first on TuxCare.

The post APT29 Espionage Attacks: Microsoft Issues Urgent Warning appeared first on Security Boulevard.

]]>
2008151
Python FBot Hacking: Cloud and SaaS Platforms Targeted https://securityboulevard.com/2024/01/python-fbot-hacking-cloud-and-saas-platforms-targeted/ Wed, 24 Jan 2024 07:00:14 +0000 https://tuxcare.com/?p=15739 In the ever-evolving landscape of cybersecurity, a recent revelation has come to light – the emergence of a new Python-based hacking tool. Malicious activities initiated using the tool are being dubbed FBot hacking.  Cybercriminals are strategically leveraging FBot to target prominent cloud and SaaS platforms, including AWS, Office365, PayPal, and Twilio, raising concerns about the […]

The post Python FBot Hacking: Cloud and SaaS Platforms Targeted appeared first on TuxCare.

The post Python FBot Hacking: Cloud and SaaS Platforms Targeted appeared first on Security Boulevard.

]]>
2006395
Embattled LastPass Enforcing 12-Character Passwords for All https://securityboulevard.com/2024/01/embattled-lastpass-enforcing-12-character-passwords-for-all/ Thu, 04 Jan 2024 16:00:17 +0000 https://securityboulevard.com/?p=2003607 lastpass passwords

Password manager vendor LastPass, beset by high-profile data breaches from 2022 that affected millions of users, is strengthening the security requirements for its customers, including requiring all of them to use a minimum of 12 characters for their master passwords. The company starting next month also will start checking new and reset passwords against a..

The post Embattled LastPass Enforcing 12-Character Passwords for All appeared first on Security Boulevard.

]]>
2003607
Okta Screws Up (Yet Again) — ALL Customers’ Data Hacked, not just 1% https://securityboulevard.com/2023/11/okta-again-hacked-richixbw/ Wed, 29 Nov 2023 17:14:49 +0000 https://securityboulevard.com/?p=2000413 A ballet dancer sits in a chair, head in hands. The text “IT’S EVEN WORSE” is superimposed.

You had one job: Last month’s sheer incompetence descends this week into UTTER FARCE.

The post Okta Screws Up (Yet Again) — ALL Customers’ Data Hacked, not just 1% appeared first on Security Boulevard.

]]>
2000413
FCC’s Got New Rules for SIM-Swap and Port-Out Fraud https://securityboulevard.com/2023/11/fcc-new-rules-sim-swap-port-out-richixbw/ Mon, 20 Nov 2023 15:33:00 +0000 https://securityboulevard.com/?p=1999643 A blown out picture of FCC chairwoman Jessica Rosenworcel

Too many times: Federal Communications Commission shuts stable door after horse bolted. But chairwoman Jessica Rosenworcel (pictured) was hoping it would save us.

The post FCC’s Got New Rules for SIM-Swap and Port-Out Fraud appeared first on Security Boulevard.

]]>
1999643
Okta Hacked Yet Again: 2FA Firm Failed to 2FA https://securityboulevard.com/2023/10/okta-hacked-2fa-fail-richixbw/ Mon, 23 Oct 2023 17:30:19 +0000 https://securityboulevard.com/?p=1993163 A ballet dancer sits in a chair, head in hands

You had one job: Once is happenstance, twice is coincidence, FIVE TIMES is sheer incompetence.

The post Okta Hacked Yet Again: 2FA Firm Failed to 2FA appeared first on Security Boulevard.

]]>
1993163
Google Pushes ‘Passkeys’ Plan — but it’s Too Soon for Mass Rollout https://securityboulevard.com/2023/10/google-forcing-passkeys-richixbw/ Tue, 10 Oct 2023 16:52:42 +0000 https://securityboulevard.com/?p=1991953 A small bunch of keys on a stark, white background

FIDO FAIL: “Killing passwords” is a worthy goal—but is coercion the best way?

The post Google Pushes ‘Passkeys’ Plan — but it’s Too Soon for Mass Rollout appeared first on Security Boulevard.

]]>
1991953