It seems like your browser didn't download the required fonts. Please revise your security settings and try again.
Barracuda XDR

You are currently viewing the legacy Barracuda Campus portal

Due to ongoing compatibility requirements during the migration, some users are still being redirected here. All content is being transitioned to the new Campus Training Portal and Campus Documentation Portal, and this legacy portal will be fully retired once the migration is complete.

Please visit https://campus.barracuda.com for more information.

Simulating Cloud Security Threats - Multi-Factor Authentication Disabled

  • Last updated on

Rule

Office 365 Multi-Factor Authentication Disabled

Purpose

Detects when Multi-Factor Authentication is disabled to a user account.

Objective

Detect when Multi-Factor Authentication (MFA) is disabled for an account.

How to test

  1. Log in to the Azure Active Directory or Office 365 admin portal using an administrator account.

  2. Disable MFA for the test user account.

  3. Navigate to Users > Multi-Factor Authentication settings.

  4. Find the test user and disable MFA for their account.

  5. Verify MFA is disabled by attempting to log in to the test user’s account without MFA