incident-response-trainer
Mock scenarios · Rule-based grading
CatalogOverviewSnapshot
← Back to catalog
CybersecurityeasyMFA Fatigue / Push BombingHigh asset
Scenario

Helpdesk tech approved MFA push at 02:14 UTC after a flood of prompts — Singapore sign-in now active

A easy Cybersecurity scenario on MFA Fatigue / Push Bombing.

Practice this scenario

Start a graded attempt against this scenario. Your response is scored by the same deterministic rubric used across the catalog. Email and evidence content stay hidden until you start.

Launches this exact scenario. One of 5 templates in this Track + Difficulty pool.

catalog id · mfa-fatigue-helpdesk-approval

Training alignment

What this scenario practices, mapped to recognized frameworks.

Educational mapping only. Not a compliance attestation.

What this trains
  • MFA-fatigue recognition
  • Helpdesk approval discipline under pressure
MITRE ATT&CKmitre-attack
  • Multi-Factor Authentication Request Generation · Credential AccessT1621 · TA0006
    MappedHigh confidence

    Trains triage of repeated MFA prompts targeting one user.

MITRE D3FENDmitre-d3fend
  • User Behavior AnalysisD3-UBA
    MappedHigh confidence

    Trains the behavior-analysis posture that flags push-prompt anomalies.

  • Multi-factor AuthenticationD3-MFA
    MappedMedium confidence

    Trains the MFA-method maturity reasoning behind resilient enrollment.

NIST CSF 2.0nist-csf-2
  • Access Control · ProtectPR.AC · PR
    MappedHigh confidence

    Trains access-control reasoning under social-engineering pressure.

NIST SP 800-61r3nist-sp-800-61r3
  • IR lifecycle phaseDetection & Analysis
    MappedHigh confidence

    Trains MFA-fatigue pattern triage.

  • IR lifecycle phaseContainment, Eradication & Recovery
    MappedHigh confidence

    Trains session-revocation and method-rotation workflow.

CISA Cybersecurity Performance Goalscisa-cpg
  • Phishing-Resistant MFA2.E
    MappedHigh confidence

    Trains the resilient-MFA baseline the scenario depends on.

  • Basic Cybersecurity Training2.F
    MappedMedium confidence

    Trains the helpdesk-awareness baseline.

CIS Controls v8cis-controls
  • Access Control ManagementControl 6
    MappedHigh confidence

    Trains the access-management control the scenario exercises.

  • Security Awareness and Skills TrainingControl 14
    MappedMedium confidence

    Trains the user/helpdesk awareness layer.