Technology
Legacy protocols used to bypass Microsoft 365 MFA – iTnews
Legacy protocols, out of band channel hijacking and real-time phishing.

Vulnerabilities in a legacy protocol and Identity Provider Solutions can be exploited by attackers to bypass multi-factor authentication (MFA) for Microsoft 365, researchers have found.
Critical vulnerabilities were discovered by security vendor Proofpoint in cloud environments that have the Web Services Trust (WS-Trust) authentication protocol enabled, which – if exploited – would give attackers full access to victim accounts including mail, files, contact and other data.
Proofpoint said that…
Continue Reading