Episode 3 focuses on reducing identity risk without relying solely on passwords.It aims to drive SMBs and MSPs to overcome the increasing reliance on MFA, as attackers are abusing trusted cloud identities and authentication tokens to bypass traditional login protections.
Register Now!
When MFA isn't enough: OAuth abuse and token theft
Password theft is no longer required for many modern attacks. MFA can protect the login, attackers target what comes afterward: Trusted applications, OAuth permissions, session tokens, and established cloud access.
In this session, we break down how OAuth abuse and token theft work, why these techniques are difficult to detect, and how organizations can better protect cloud identities.
Gain practical guidance for reducing identity risk without relying solely on passwords or MFA, across:
- OAuth permissions
- Token and session controls
- Anomalous cloud access identification
- Malicious application consent
Don’t miss the next chapter of Attack breakdown: How modern cyberattacks really work.