Hacker News new | ask | show | jobs
Enable Conditional Access policies to block legacy authentication (gitbit.org)
1 points by gruberjl 717 days ago
1 comments

Today, most compromising sign-in attempts come from legacy authentication. Older office clients such as Office 2010 don’t support modern authentication and use legacy protocols such as IMAP, SMTP, and POP3. Legacy authentication does not support multifactor authentication (MFA). Even if an MFA policy is configured in your environment, bad actors can bypass these enforcements through legacy protocols.