New vulnerabilities allow hackers to bypass MFA for Microsoft 365 null

New vulnerabilities allow hackers to bypass MFA for Microsoft 365 null

Critical vulnerabilities in multi-factor authentication (MFA) implementation in cloud environments where WS-Trust is enabled could allow attackers to bypass MFA and access cloud applications such as Microsoft 365 which use the protocol according to new research from Proofpoint. As a result of the way Microsoft 365 session login is designed, an attacker could gain full […]