Not all types of MFA are created equal…

For several years, we have strongly advocated for the use of multi-factor authentication (MFA). MFA, also recognized as 2-step verification (2SV) or two-factor authentication (2FA), serves as a protective measure against various common threats aimed at user accounts. This is the reason our 2018 guidance delivered a straightforward message: organizations must begin implementing 2FA for…

Read More

Telling users to ‘avoid clicking bad links’ still isn’t working

Addressing the Issue of Security Awareness Let’s begin with an essential truth: many long-standing security practices are ineffective. For instance, advising users to avoid clicking on dubious links often fails. Users often must engage with links from unknown domains as part of their work, and identifying phishing attempts is typically not within their job description….

Read More
Back To Top