← All stories
● Covered by 1 source · 1 reportMedium impact1 neutral

Identity Verification Flaws in Onboarding and Account Recovery Pose Growing Security Risk

🔄 Updated 2h ago
New to BrevFeed? We gather this story from every outlet covering it into one summary — ranked by real-world impact, not just the latest headline — so you never miss what matters. What is BrevFeed? →

Key points

  • MFA and conditional access do not fully address identity verification risks.
  • Attackers exploit onboarding and account recovery processes via social engineering.
  • North Korean IT workers impersonate foreign nationals for employment.
  • Scattered Spider uses social engineering for account resets, linked to the 2025 M&S breach.

Beyond Traditional Authentication

While multi-factor authentication (MFA) and conditional access have strengthened login security, they do not resolve all identity-related problems. Attackers are shifting tactics from credential theft to exploiting weaknesses in how trust is established or re-established within an organization's identity lifecycle.

Vulnerabilities in Onboarding

The onboarding process for new employees presents a critical juncture for identity verification. If initial identity checks fail, an attacker can gain legitimate-appearing access to an organization's environment. An example of this is the joint alert issued in late July 2026 by the US Department of State and allies, warning that North Korean IT workers were impersonating foreign nationals to secure technology jobs by falsifying identity documents.

Account Recovery Exploits

Similar vulnerabilities exist in account recovery processes. Threat actor groups like Scattered Spider are known for their proficiency in social engineering, impersonating employees to trick service desks into resetting passwords and granting access. This tactic was linked to the 2025 M&S ransomware breach, which resulted in an estimated $400 million loss in operating profit due to lost sales.

The Core Security Challenge

The fundamental security question in these scenarios is the organization's confidence in verifying the identity of the person making a request. Verizon's Data Breach Investigation Report indicates that stolen credentials are involved in 44.7% of breaches, highlighting the ongoing challenge of identity assurance.

✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →

The daily brief

One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.

One email a day. Unsubscribe in one click, any time.

Today's brief

Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.

~12 min · 12 stories · Aug 25

▶ Play today's brief Listen on Spotify

New every morning, and the back catalogue is archived by date.

Reporting from

Organizations face increasing security risks from vulnerabilities in identity verification during new employee onboarding and account recovery processes, even with strong authentication methods like MFA. Attackers exploit these weaknesses through social engineering to gain unauthorized access, as seen with North Korean IT worker impersonations and groups like Scattered Spider.