Mitigating the Threat of Multi‐Factor Authentication (MFA) Bypass Through Man‐in‐the‐Middle Attacks Using EvilGinx2

Sundaram Mishra, Shivam Mishra, Yan Chi Toh, Satyam Kumar Mishra, Phung Thao Vi · 2024

Multi-factor authentication (MFA) has become a widely adopted security measure to enhance account protection against unauthorized access. However, this study aims to investigate the vulnerabilities and potential risks associated with MFA implementations by exploring the use of a man-in-the-middle (MITM) attack tool called EvilGinx2. The tool is designed to intercept login credentials and session cookies, effectively bypassing MFA protections and granting unauthorized access to user accounts. This research will delve into the capabilities of EvilGinx2 as a red team tool, highlighting its functionality and the techniques it employs to clone legitimate websites and prompt users to provide their MFA codes or push prompts. By analyzing the tool's ability to capture authentication cookies, this study focused on specific data attackers, including usernames, passwords, and authentication cookies.

Read the paper · More papers on PaperTik