back

by Jimmc414·4y ago·view on hn ↗
"Even though the victims required MFA to access cloud resources from all locations, including on premises, the threat actor managed to bypass MFA through the theft of Chrome browser cookies"