Hacking & Protecting Advanced Authentication

Presented at THOTCON 0x9 (2018), May 4, 2018, 5 p.m. (25 minutes)

Many organizations have implemented Multi-Factor and Advanced Authentication Solutions. But, are they really secure? Do they solve the problem statement, or just waste capital? Can they deliver on the promises? We will attack multiple MFA solutions, revealing brittle edges that permit attacks like bypass, exploit, man-in-the-middle and compromise. We will break down the attacks and what permitted the exploit, and then demonstrate critical steps where MFA not "the answer", but one important step to armoring credentials and protect the firm. The principles of a credential firewall will be introduced, and a holistic approach to identity that is required to achieve truly advanced authentication. Warning, packets may be harmed. Not for the squeamish.


Presenters:

  • Mick Douglas
    Mick Douglas is...
  • Dan Houser
    Dan Houser uses science, creativity & caring to solve big security problems.

Similar Presentations: