Skip to main content

Search site

Find podcasts, news, articles, webinars, and contributors in one search.

2 Minute Drill
2 Minute Drill artwork

2 Minute Drill: Why Your MFA Isn't Stopping Direct Deposit Theft with Drex DeFord

About This Episode

Cybercriminals are hijacking employee paychecks by exploiting outdated MFA systems in payroll platforms like Workday. Drex breaks down how attackers use sophisticated phishing techniques—including MFA fatigue attacks and session hijacking—to bypass traditional two-factor authentication. Learn why text-based and push notification MFA are no longer secure, and discover how phishing-resistant authentication methods like FIDO2 keys and passkeys can protect your organization from paycheck theft. CISA and NIST recommend upgrading now—before your team's direct deposits sail off with the pirates.

Remember, Stay a Little Paranoid 

X: This Week Health 

LinkedIn: This Week Health 

Donate: Alex’s Lemonade Stand: Foundation for Childhood Cancer

Contributors

People featured in this episode — open a profile for more.

Found this useful? Share it with your network