It seems like your browser didn't download the required fonts. Please revise your security settings and try again.
Barracuda XDR

Simulating Cloud Security Threats - Multi-Factor Authentication Disabled

  • Last updated on

Rule

Office 365 Multi-Factor Authentication Disabled

Purpose

Detects when Multi-Factor Authentication is disabled to a user account.

Objective

Detect when Multi-Factor Authentication (MFA) is disabled for an account.

How to test

  1. Log in to the Azure Active Directory or Office 365 admin portal using an administrator account.

  2. Disable MFA for the test user account.

  3. Navigate to Users > Multi-Factor Authentication settings.

  4. Find the test user and disable MFA for their account.

  5. Verify MFA is disabled by attempting to log in to the test user’s account without MFA