InfoTechTarget and Informa Tech's Digital Businesses Combine.

Together, we power an unparalleled network of 220+ online properties covering 10,000+ granular topics, serving an audience of 50+ million professionals with original, objective content from trusted sources. We help you gain critical insights and make more informed decisions across your business priorities.

Cookies for Criminals: The Underground Market Fueling MFA Bypass

Presented by

Nick Ascoli Director, Product Strategy, Flare

About this talk

Adversaries don’t need passwords when they have your tokens. In this webinar, Nick Ascoli, Director of Product Strategy, uncovers the evolving tradecraft behind session hijacking and cookie theft—two increasingly common techniques leveraged by cybercriminals to bypass MFA, impersonate users, and maintain long-term persistence. He’ll explore how threat actors harvest and weaponize session tokens, how these credentials are trafficked in the cybercrime underground, and how defenders can identify the telltale signs of a takeover. Using real-world intelligence and Flare data, this webinar will walk through: Common collection methods (info-stealers, XSS, token sync abuse) How session cookies are used in post-compromise scenarios Trends in cookie-based access sales on dark web markets Detection strategies and incident response best practices By the end of this webinar, you’ll understand how session tokens function as high-value credentials—and how attackers exploit this blind spot to bypass even your strongest authentication controls.
EC-Council | Security Channel

EC-Council | Security Channel

50099 subscribers82 talks
For Certified Members and Information Security Professionals Globally
The International Council of E-Commerce Consultants (EC-Council) is a member-based organization that certifies individuals in various e-business and security skills. It is the owner and developer of the world famous Certified Ethical Hacker (C|EH), Computer Hacking Forensics Investigator (C|HFI) and EC-Council Certified Security Analyst (E|CSA)/License Penetration Tester (L|PT) programs, and various others offered in over 60 countries around the globe.
Related topics