11/08/2026
A lot of security problems in Irish businesses do not start with a hack. They start with a habit.
When staff receive too many multi-factor authentication prompts, they start approving them without thinking. Not because they are careless — because the system has trained them to tap yes and get on with their day.
This is called MFA fatigue. Attackers deliberately flood an account with approval requests, knowing that eventually someone will approve one just to make it stop. It is not a technical failure. It is a human one — and it is entirely predictable.
A well-configured MFA setup should not bombard staff with prompts. It should require step-up verification only when something looks unusual — a new device, a different location, an odd time of day.
The question worth asking is not whether your business uses MFA. It is whether the way it is set up is quietly creating the problem it was meant to solve.