Microsoft has added a new security feature to the Authenticator app. This feature blocks suspicious notifications that occur during the account login process.
Microsoft Authenticator is an app that provides multi-factor authentication, password auto-fill, and password-less sign-in to Microsoft accounts.
By infosecbulletin
/ Friday , September 11 2026
GitLab has released an important security update to fix two serious problems. These issues could allow unauthorized file access and...
Read More
By infosecbulletin
/ Thursday , September 10 2026
Palo Alto Networks has revealed a serious flaw in PAN-OS. It may let a remote attacker without a password run...
Read More
By infosecbulletin
/ Thursday , September 10 2026
Check Point Software has revealed and fixed two major VPN flaws, CVE-2026-85102 and CVE-2026-85103. Both have a top CVSS score...
Read More
By infosecbulletin
/ Thursday , September 10 2026
Cisco has said that a serious security flaw CVE-2026-20079 in its Secure Firewall Management Center (FMC) software is being used...
Read More
By infosecbulletin
/ Thursday , September 10 2026
A Russian-speaking hacker has used artificial intelligence like never before. They sent out hundreds of AI agents to find and...
Read More
By infosecbulletin
/ Thursday , September 10 2026
Six Chinese AI companies ran large-scale attacks on American AI models since late 2024, according to U.S. cybersecurity and intelligence...
Read More
By infosecbulletin
/ Wednesday , September 9 2026
An unknown security expert called Nightmare Eclipse has drops a new Microsoft Defender flaw called "ShieldCrash" right after Microsoft released...
Read More
By infosecbulletin
/ Wednesday , September 9 2026
cPanel has shared CVE-2026-67401, a serious SQL injection flaw in EmailTrack. This flaw could allow attackers with permission to take...
Read More
By infosecbulletin
/ Wednesday , September 9 2026
An ongoing attack is focused on FortiGate firewalls. Hackers use a serious flaw to install a special Node.js remote access...
Read More
By infosecbulletin
/ Wednesday , September 9 2026
Microsoft shared its September 2026 security updates on September 8. These updates fix 973 flaws, including two serious issues that...
Read More
When a user tries to log into an account with protected by multi-factor authentication (MFA), the Authenticator app sends a push notification to the user’s device to grant or deny access.
Alternatively, the app generates a temporary access code for users to manually log into their account.
ALSO READ:
Trial run of ‘Smart Parking’ app started at Dhaka
Hackers exploit push notifications by performing many login attempts on the target account, often at inconvenient times, to frustrate or tire the recipients.
If the tired user agrees to a request, the attacker can enter the account and change the login security settings to lock out the real user.
Microsoft added a security feature called “number matching” in May. It requires users to enter a number from the sign-in screen into their Authenticator app to approve the login.
Although this measure has reduced the effectiveness of MFA fatigue attacks, it doesn’t stop the generation of the annoying notifications themselves.

Microsoft has added new features to fight against malicious activity. These features examine login attempts for unfamiliar locations or signs of unusual activity, and block the related notifications.
Instead, users receive a message that prompts to open the Authenticator app and enter a given code.
You can still see login notifications in the Authenticator App for review when needed.

Microsoft has blocked over six million MFA notifications believed to be from hackers since the new feature was rolled out in September.