Adversary-in-the-Middle Attacks Are Bypassing MFA at Scale
For years, multi-factor authentication (MFA) was the gold standard of account security. Security teams deployed it across every critical system, confident that even if a password was stolen, the attacker couldn’t get in. That confidence is no longer justified. Adversary-in-the-Middle (AiTM) phishing attacks have rendered traditional MFA nearly useless for credential-based authentication, and the kits…