Bot attacks on Azure AD B2C can exploit SMS/phone call MFA during sign-up to create thousands of fake accounts, incurring significant costs. To mitigate this, disabling SMS MFA in favor of TOTP, enabling bot protection (e.g., Cloudflare), or disabling sign-up entirely are recommended. For cleaning up bot-created accounts, a

3m read timeFrom blog.rufer.be
Post cover image
Table of contents
Share this:Like this:Related

Sort: