Two factor authentication? Depending on the solution they chose, it is probably costing them 10 times per month for the token (or whatever they are using) than it did to just eat the phish.


To the contrary, they were dealing with 250k-750k phishing attacks/month. According to them it has already paid for itself. 2 factor can also take advantage of existing infrastructure in some cases.

