Potential pitfalls of MFA as passwords fade
Professional Security, Saturday, May 4th, 2024
The password is hanging on by a thread. It was a simple password reset request to a service desk that led to the major ransomware attack on MGM in 2023.
The casino giant stated that it expected to lose $100 million as a result of the breach. Its well-documented tendency to be bypassed by hackers has led Google to announce that its apps will now be 'passwordless by default', writes James Smith, Head of Offensive Security at the cyber consultancy Bridewell.
Multi-factor authentication (MFA) has emerged as the viable alternative to reduce the volume of successful data breaches. However, its implementation comes with a set of considerations that businesses need to keep in mind as they consign passwords to the history books.