
2 Minute Drill: Why Your MFA Isn't Stopping Direct Deposit Theft with Drex DeFord
Cybercriminals are hijacking employee paychecks by exploiting outdated MFA systems in payroll platforms like Workday. Drex breaks down how attackers use sophisticated phishing techniques—including MFA fatigue attacks and session hijacking—to bypass traditional two-factor authentication. Learn why text-based and push notification MFA are no longer secure, and discover how phishing-resistant authentication methods like FIDO2 keys and passkeys can protect your organization from paycheck theft. CISA and NIST recommend upgrading now—before your team's direct deposits sail off with the pirates.
Remember, Stay a Little Paranoid
Donate: Alex’s Lemonade Stand: Foundation for Childhood Cancer
More episodes from "UnHack with Drex DeFord"



Don't miss an episode of “UnHack with Drex DeFord” and subscribe to it in the GetPodcast app.







