This week, Adam and Andy talk about a Red Team/Pentesting tool called EvilGinx. They explain how this tool works and how cyber-criminals can use it to bypass MFA enabled accounts. Most importantly, they provide several ways to mitigate against this using enterprise driven phishing education campaigns, security awareness training, and device-based conditional access.
\n----------------------------------------------
\nYoutube Video Link:
\nhttps://youtu.be/a2NLk0GnUJ8
\n----------------------------------------------
\nContact:
\nWebsite: http://bluesecuritypod.com
\nTwitter: https://twitter.com/bluesecuritypod
\nInstagram: https://www.instagram.com/bluesecuritypodcast/
\nFacebook: https://www.facebook.com/bluesecpod
\n----------------------------------------------
\nAndy Jaw
\nTwitter: https://twitter.com/ajawzero
\nLinkedIn: https://www.linkedin.com/in/andyjaw/
\nEmail: andy@bluesecuritypod.com
\n----------------------------------------------
\nAdam Brewer
\nTwitter: https://twitter.com/ajbrewer
\nLinkedIn: https://www.linkedin.com/in/adamjbrewer/
\nEmail: adam@bluesecuritypod.com