Two-factor inauthentication – the rise in SMS phishing attacks

Markus Jakobsson · Computer Fraud & Security · 2018

There are countless ways to carry out a cyber-attack, but in the vast majority the key is deception – typically involving identity deception in which the attacker poses as a trusted party to the intended victim. Many of these attacks involve stealing passwords from victims in order to access their accounts and pose as them. Therefore, with cyber-criminals constantly on the prowl to capture passwords and other credentials, two-factor authentication (2FA) has become one of the most widely accepted back-up verifications for many services and companies. With cyber-criminals constantly on the prowl to capture passwords and other credentials, two-factor authentication (2FA) has become one of the most widely accepted back-up verifications for many services and companies. However, as Markus Jakobsson of Agari points out, 2FA has its own issues. Other options are on the way, but it's more important than ever for organisations to be aware that their workforce's digital identities may be compromised.

Read the paper · More papers on PaperTik