Microsoft rolls out new feature to MFA app, prevents spam attacks
San Francisco
29-October-2022
Microsoft has rolled out a new feature to its multi-factor authentication (MFA) app, Microsoft Authenticator, to prevent spam attacks.
When 'number matching' is enabled, the Authenticator app asks the user to enter the number shown on the sign-on screen rather than just selecting "approve" when approving an MFA request. This will be a useful feature for admins whose users were unprepared for the MFA attack.
The feature is available for the administrators for now, but the company wants to make 'number matching' the default for all Authenticator users in February 2023.
To avoid unintentional approvals, administrators can also set up Authenticator to use application context and location context.
After the new feature becomes the Authenticator app's default, the admin rollout controls will be removed.
Earlier this year, researchers discovered so-called "MFA fatigue attacks" targeting Office 365 users. In those attacks, attackers continually cause MFA push alerts while attempting to log into a victim's account using a password that has previously been compromised.
Watch This TWL Video
The attacker was counting on the victim becoming tired or inattentive enough to approve the login attempt mistakenly at some time, the report said. - IANS
More Headlines
PM Narendra Modi Makes Podcast Debut with Nikhil Kamath on 'People By WTF'
Laundry Startup Revivo Secures Pre-Seed Funding For Expansion
Bajrang Dal Appeals to Ban Oyo Check-Ins for Unmarried Couples in Bengaluru
Heavy Rains Predicted In Five TN Districts On January 11
Cold Wave Grips Rajasthan: Fatehpur Hits 1.1°C, Nagaur 1.7°C
PM Narendra Modi Makes Podcast Debut with Nikhil Kamath on 'People By WTF'
Laundry Startup Revivo Secures Pre-Seed Funding For Expansion
Bajrang Dal Appeals to Ban Oyo Check-Ins for Unmarried Couples in Bengaluru
Heavy Rains Predicted In Five TN Districts On January 11
Cold Wave Grips Rajasthan: Fatehpur Hits 1.1°C, Nagaur 1.7°C