Cybercriminals are constantly exploring and documenting new ways to go around the 3D Secure (3DS) protocol used for authorizing online card transactions. Discussions on dark-web forums offer advice on how to bypass the latest variant of the security feature by combining social engineering with phishing attacks. Gemini Advisory believes that cybercriminals will also take a stab at the more secure 3DS 2 through social engineering. The same tactic could work on later versions of 3DS variants and make purchases in real-time.
Source: https://www.bleepingcomputer.com/news/security/hackers-share-methods-to-bypass-3d-secure-for-payment-cards/