A phishing-as-a-service platform called BigBear 2.0 deliberately disabled hardware security key authentication in victims' ...