DataSans
MFA Security Awareness Training

Innovative Way to Bypass MFA Using Microsoft WebView2 Is Familiar Nevertheless

An interesting way to bypass multi-factor authentication (MFA) was recently announced by Bleeping Computer. This particular attack method requires a potential victim to be tricked into downloading a malicious executable (not so hard unfortunately), and the resulting rogue code then uses Microsoft Edge’s WebView2 control to essential create a rogue web page which can mimic any other web page, except with new malicious coding inserted.

originally published onhttps://blog.knowbe4.com/innovative-way-to-bypass-mfa-using-microsoft-webview2-is-familiar-nevertheless

Related posts

Introducing the New ‘Security Masterminds’ Podcast

administrator

KnowBe4 Named a Leader in the Winter 2022 G2 Grid Report for Security Awareness Training

administrator

Engaging Your Remote Workforce: Go Beyond Compliance with Training

administrator