Many organizations, including ours, are using the MFA push notification approval/deny method in Office 365 for user authentication. While it’s convenient, I’m concerned about the risk of phishing attacks where an attacker might trick users into approving a legitimate-looking push notification. How secure is this method? Are there better alternatives or steps to mitigate phishing risks while keeping user experience intact?