What's Happening?
Adversary-in-the-middle (AiTM) phishing has become the leading method for attackers to gain initial access to law firms, surpassing traditional credential theft. Despite the widespread adoption of multifactor authentication (MFA) in the legal sector,
sophisticated attack techniques continue to bypass these security measures. A report from eSentire reveals that AiTM attacks accounted for 28.57% of all initial access events in the legal sector, with a significant year-over-year increase in incidents. The report highlights the need for law firms to implement phishing-resistant MFA, conditional access policies, and robust log monitoring to mitigate these threats.
Why It's Important?
The rise of AiTM phishing as a primary threat to law firms underscores the evolving nature of cyber threats and the need for enhanced security measures. Law firms, which handle sensitive client information, are attractive targets for cybercriminals seeking to exploit vulnerabilities in authentication processes. The report's findings highlight the importance of adopting advanced security practices, such as phishing-resistant MFA and comprehensive incident response plans, to protect against data breaches and unauthorized access. As cyber threats continue to evolve, law firms must remain vigilant and proactive in their cybersecurity efforts to safeguard client data and maintain trust.











