Nextworks Logo
Back to Nextworks  

Cybercriminals are Defeating MFA/2FA to Access Your Online Accounts

Examination
   

HOW THE ADVERSARY-IN-THE-MIDDLE (AiTM) PHISHING SCAM WORKS

August 2023 | Nextworks




You are likely rather familiar with multi-factor authentication (MFA / 2FA) by now. Logging into the myriad of the online services you use daily can trigger a text message to your phone or require a code from an Authenticator App. This additional security step is an effective mechanism to help protect your identity, finances, and data.

MFA allows you to prove that it is indeed you, and not a cybercriminal, who is trying to access your bank account, health records, etc. We highly suggest enabling MFA whenever possible. You can usually enable MFA in your account settings. While MFA does pose some inconvenience, it’s a prudent safeguard.

Refer to our related 2022 article “How the #1 Email Scam Works” to understand how MFA can help keep you safe.