General session image of Knowledge Forum D

Beyond MFA: Why multi-factor authentication alone falls short

When MFA becomes an illusion: adversary-in-the-middle – the intercepted sign-in as the new standard. Attack, risk, defence.

Topic

Awareness / Phishing / FraudCloud SecurityManaged Security Services / HostingSIEM / Threat Analytics / SOC

When & Where

calendar_month

Tue, 10/27/2026 04:15 PM - 04:30 PM

location_on

Forum D, Booth 7-742

Download session as iCaldownload_for_offline

Details

  • Format:

    Technology lecture

  • Language:

    German

Session description

Speaker: Christian Kollee Business Email Compromise (BEC) is one of the most underestimated cyber threats of our time and simultaneously the most common incident type handled by Eye Security's SOC: over 180 cases this year alone. This talk examines the attack technique that has become the standard today: the Adversary-in-the-Middle attack. This method enables attackers to bypass conventional multi-factor authentication in a targeted manner, rendering one of the most important security controls ineffective. We will demonstrate how AitM attacks work in technical terms, why they are so dangerous, and what concrete measures organisations can take to effectively protect their employees.
Sponsored by