<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic MFA blind spots and no one talks about it in Tech Talk</title>
    <link>https://community.isc2.org/t5/Tech-Talk/MFA-blind-spots-and-no-one-talks-about-it/m-p/57742#M3856</link>
    <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Multi-factor Authentication (MFA) has long ago become a standard security practice. With a wide consensus on its ability to fend off more than 99% percent of account takeover attacks, it's no wonder why security architects regard it as a must-have in their environments. However, what seems to be less known are the inherent coverage limitations of traditional MFA solutions. While compatible with RDP connection and local desktop logins, &lt;STRONG&gt;they offer no protection to remote command line access tools like PsExec, Remote PowerShell and their likes.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://thehackernews.com/2023/03/when-partial-protection-is-zero.html?_m=3n%2e009a%2e2987%2etv0ao44mgf%2e1ymu" target="_blank"&gt;https://thehackernews.com/2023/03/when-partial-protection-is-zero.html?_m=3n%2e009a%2e2987%2etv0ao44mgf%2e1ymu&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Have a good read and lets learn from the experience, the garden may not be as rosy as you think!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 09 Oct 2023 10:27:59 GMT</pubDate>
    <dc:creator>Caute_cautim</dc:creator>
    <dc:date>2023-10-09T10:27:59Z</dc:date>
    <item>
      <title>MFA blind spots and no one talks about it</title>
      <link>https://community.isc2.org/t5/Tech-Talk/MFA-blind-spots-and-no-one-talks-about-it/m-p/57742#M3856</link>
      <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Multi-factor Authentication (MFA) has long ago become a standard security practice. With a wide consensus on its ability to fend off more than 99% percent of account takeover attacks, it's no wonder why security architects regard it as a must-have in their environments. However, what seems to be less known are the inherent coverage limitations of traditional MFA solutions. While compatible with RDP connection and local desktop logins, &lt;STRONG&gt;they offer no protection to remote command line access tools like PsExec, Remote PowerShell and their likes.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://thehackernews.com/2023/03/when-partial-protection-is-zero.html?_m=3n%2e009a%2e2987%2etv0ao44mgf%2e1ymu" target="_blank"&gt;https://thehackernews.com/2023/03/when-partial-protection-is-zero.html?_m=3n%2e009a%2e2987%2etv0ao44mgf%2e1ymu&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Have a good read and lets learn from the experience, the garden may not be as rosy as you think!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 09 Oct 2023 10:27:59 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/MFA-blind-spots-and-no-one-talks-about-it/m-p/57742#M3856</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2023-10-09T10:27:59Z</dc:date>
    </item>
    <item>
      <title>Re: MFA blind spots and no one talks about it</title>
      <link>https://community.isc2.org/t5/Tech-Talk/MFA-blind-spots-and-no-one-talks-about-it/m-p/57743#M3857</link>
      <description>&lt;P&gt;We must see them before we can hear them…&lt;/P&gt;</description>
      <pubDate>Mon, 13 Mar 2023 05:30:47 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/MFA-blind-spots-and-no-one-talks-about-it/m-p/57743#M3857</guid>
      <dc:creator>Early_Adopter</dc:creator>
      <dc:date>2023-03-13T05:30:47Z</dc:date>
    </item>
    <item>
      <title>Re: MFA blind spots and no one talks about it</title>
      <link>https://community.isc2.org/t5/Tech-Talk/MFA-blind-spots-and-no-one-talks-about-it/m-p/57748#M3858</link>
      <description>&lt;P&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/797288093"&gt;@Early_Adopter&lt;/a&gt;Or experience it before you realise you have been compromised.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;</description>
      <pubDate>Mon, 13 Mar 2023 19:03:03 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/MFA-blind-spots-and-no-one-talks-about-it/m-p/57748#M3858</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2023-03-13T19:03:03Z</dc:date>
    </item>
  </channel>
</rss>

