
CyberWire Daily MFA meets its match.
24 snips
Feb 19, 2026 Tim Starks, senior reporter at CyberScoop covering cybersecurity policy and federal agencies, joins to explain CISA’s planned industry town halls on incident reporting. The conversation covers CIRCEA’s tight reporting deadlines and industry concerns about vague definitions and implementation burdens. They also discuss CISA staffing, morale, and why two-way dialogue matters for workable rules.
AI Snips
Chapters
Transcript
Episode notes
Phishing Kits Now Bypass MFA
- Starkiller is a commercial-grade phishing kit that proxies live sessions to bypass MFA in real time.
- Its subscription model, brand impersonation, and support make it a durable threat to enterprises.
Blockchain Lender Data Leak Scale
- Figure Technology Solutions suffered a breach where social engineering of an employee exposed nearly 1 million records.
- Attackers published 2.4GB of alleged data and linked the incident to a broader voice-phishing campaign.
Botnets Can Destabilize Privacy Nets
- The Kim Wolf botnet attempted a Sybil attack on the I2P anonymity network by flooding it with hundreds of thousands of routers.
- The botnet's experiment shows how IoT malware can destabilize peer-to-peer privacy infrastructures.

