Blog

A new phishing campaign is exploiting Microsoft’s legacy ADFS identity solution to steal credentials and bypass MFA


Hackers are targeting organizations around the world that rely on Microsoft’s Active Directory Federation Services (ADFS) secure access system in an ongoing phishing campaign, according to new research.

Analysis from Abnormal Security describes how Microsoft’s ADfS, a legacy single-sign-on (SSO) solution that allows employees to use one set of credentials to authenticate across multiple applications and environments, is being mimicked by hackers to gain access to corporate networks.


Source link

Related Articles

Back to top button
close