Hacking Multifactor Authentication /

Multi-Factor Authentication (MFA) is spreading like wildfire across digital environments. However, hundreds of millions of dollars have been stolen from MFA-protected online accounts. How? Most people who use multifactor authentication (MFA) have been told that it is far less hackable than other typ...

Full description

Bibliographic Details
Main Author: Grimes, Roger A., author 617083
Format: text
Language:eng
Published: Indianapolis, Indiana : John Wiley & Sons, Inc., [202
Subjects:
_version_ 1796762718461493248
author Grimes, Roger A., author 617083
author_facet Grimes, Roger A., author 617083
author_sort Grimes, Roger A., author 617083
collection OCEAN
description Multi-Factor Authentication (MFA) is spreading like wildfire across digital environments. However, hundreds of millions of dollars have been stolen from MFA-protected online accounts. How? Most people who use multifactor authentication (MFA) have been told that it is far less hackable than other types of authentication, or even that it is unhackable. You might be shocked to learn that all MFA solutions are actually easy to hack. That's right: there is no perfectly safe MFA solution. In fact, most can be hacked at least five different ways. Hacking Multifactor Authentication will show you how MFA works behind the scenes and how poorly linked multi-step authentication steps allows MFA to be hacked and compromised. This book covers over two dozen ways that various MFA solutions can be hacked, including the methods (and defenses) common to all MFA solutions. You'll learn about the various types of MFA solutions, their strengthens and weaknesses, and how to pick the best, most defensible MFA solution for your (or your customers') needs. Finally, this book reveals a simple method for quickly evaluating your existing MFA solutions.
first_indexed 2024-03-05T16:45:00Z
format text
id KOHA-OAI-TEST:593175
institution Universiti Teknologi Malaysia - OCEAN
language eng
last_indexed 2024-03-05T16:45:00Z
publishDate [202
publisher Indianapolis, Indiana : John Wiley & Sons, Inc.,
record_format dspace
spelling KOHA-OAI-TEST:5931752021-12-12T06:59:03ZHacking Multifactor Authentication / Grimes, Roger A., author 617083 textIndianapolis, Indiana : John Wiley & Sons, Inc.,[2021]©2021engMulti-Factor Authentication (MFA) is spreading like wildfire across digital environments. However, hundreds of millions of dollars have been stolen from MFA-protected online accounts. How? Most people who use multifactor authentication (MFA) have been told that it is far less hackable than other types of authentication, or even that it is unhackable. You might be shocked to learn that all MFA solutions are actually easy to hack. That's right: there is no perfectly safe MFA solution. In fact, most can be hacked at least five different ways. Hacking Multifactor Authentication will show you how MFA works behind the scenes and how poorly linked multi-step authentication steps allows MFA to be hacked and compromised. This book covers over two dozen ways that various MFA solutions can be hacked, including the methods (and defenses) common to all MFA solutions. You'll learn about the various types of MFA solutions, their strengthens and weaknesses, and how to pick the best, most defensible MFA solution for your (or your customers') needs. Finally, this book reveals a simple method for quickly evaluating your existing MFA solutions.Includes bibliographical and indexes.Part I Introduction -- Chapter 1 Logon Problems --Chapter 2 Authentication Basics -- Chapter 3 Types of Authentication -- Chapter 4 Usability vs. Security -- Part II Hacking MFA -- Chapter 5 Hacking MFA in General -- Chapter 6 Access Control Token Tricks -- Chapter 7 Endpoint Attacks -- Chapter 8 SMS Attacks -- Chapter 9 One-Time Password Attacks -- Chapter 10 Subject Hijack Attacks -- Chapter 11 Fake Authentication Attacks -- Chapter 12 Social Engineering Attacks -- Chapter 13 Downgrade/Recovery Attacks -- Chapter 14 Brute-Force Attacks -- Chapter 15 Buggy Software -- Chapter 16 Attacks Against Biometrics -- Chapter 17 Physical Attacks -- Chapter 18 DNS Hijacking -- Chapter 19 API Abuses -- Chapter 20 Miscellaneous MFA Hacks -- Chapter 21 Test: Can You Spot the Vulnerabilities? -- Part III Looking Forward -- Chapter 22 Designing a Secure Solution -- Chapter 23 Selecting the Right MFA Solution -- Chapter 24 The Future of Authentication -- Chapter 25 Takeaway Lessons.Multi-Factor Authentication (MFA) is spreading like wildfire across digital environments. However, hundreds of millions of dollars have been stolen from MFA-protected online accounts. How? Most people who use multifactor authentication (MFA) have been told that it is far less hackable than other types of authentication, or even that it is unhackable. You might be shocked to learn that all MFA solutions are actually easy to hack. That's right: there is no perfectly safe MFA solution. In fact, most can be hacked at least five different ways. Hacking Multifactor Authentication will show you how MFA works behind the scenes and how poorly linked multi-step authentication steps allows MFA to be hacked and compromised. This book covers over two dozen ways that various MFA solutions can be hacked, including the methods (and defenses) common to all MFA solutions. You'll learn about the various types of MFA solutions, their strengthens and weaknesses, and how to pick the best, most defensible MFA solution for your (or your customers') needs. Finally, this book reveals a simple method for quickly evaluating your existing MFA solutions.PSZ_JBComputersComputer securityURN:ISBN:9781119650799
spellingShingle Computers
Computer security
Grimes, Roger A., author 617083
Hacking Multifactor Authentication /
title Hacking Multifactor Authentication /
title_full Hacking Multifactor Authentication /
title_fullStr Hacking Multifactor Authentication /
title_full_unstemmed Hacking Multifactor Authentication /
title_short Hacking Multifactor Authentication /
title_sort hacking multifactor authentication
topic Computers
Computer security
work_keys_str_mv AT grimesrogeraauthor617083 hackingmultifactorauthentication