UnHack with Drex DeFord podcast

2 Minute Drill: Why Your MFA Isn't Stopping Direct Deposit Theft with Drex DeFord

0:00
4:06
Rewind 15 seconds
Fast Forward 15 seconds

Cybercriminals are hijacking employee paychecks by exploiting outdated MFA systems in payroll platforms like Workday. Drex breaks down how attackers use sophisticated phishing techniques—including MFA fatigue attacks and session hijacking—to bypass traditional two-factor authentication. Learn why text-based and push notification MFA are no longer secure, and discover how phishing-resistant authentication methods like FIDO2 keys and passkeys can protect your organization from paycheck theft. CISA and NIST recommend upgrading now—before your team's direct deposits sail off with the pirates.

Remember, Stay a Little Paranoid

X: This Week Health

LinkedIn: This Week Health

Donate: Alex’s Lemonade Stand: Foundation for Childhood Cancer

More episodes from "UnHack with Drex DeFord"