4/15 (二) 12:40 - 13:10

MFA is good, but not good enough!

Premiere: 4/15 12:40 - 13:10 

Replays: 4/15 18:40 - 19:10, 4/16 00:40 - 01:10


Multi-Factor Authentication (MFA) has long been considered an effective defense against account takeovers. However, with attackers developing automated tools to bypass MFA, relying solely on MFA is no longer sufficient. This session will explore the limitations of MFA and why a more comprehensive security strategy is essential to mitigate account compromise risks.

The presentation will cover the latest trends in MFA bypass attacks and analyze common techniques such as Pass-the-Cookies, push notification fatigue attacks, malware-based attacks, brute force, and adversary-in-the-middle (AiTM) attacks. To effectively counter these threats, organizations must go beyond traditional MFA and integrate technologies like artificial intelligence, machine learning, and behavioral analytics.

Additionally, implementing adaptive access controls, conducting regular security awareness training, and adopting a layered defense strategy are crucial to strengthening overall security. This session will provide insights into building a more resilient authentication framework to protect against evolving threats.

Jerry Shi
講者
Proofpoint
Cybersecurity Strategist, Cybersecurity Strategy APJ

TOPIC / TRACK
CYBERSEC GLOBAL 2025: United as One

LEVEL
通識 通識議程探討資安新知與非技術性的議題,適合尚未具備或只具備少許資安知識的資訊與資安人員。

SESSION TYPE
Live Stream Session

LANGUAGE
英文

SUBTOPIC
Multi-Factor Authentication
Social Engineering
Behavioral Analytics