Bypassing 2FA with phishing and OTP bots
ID: 7d2f3a87-2c3d-524d-ac31-10abf82af68c
STIX ID: report--7d2f3a87-2c3d-524d-ac31-10abf82af68c
Feed Name: Securelist by Kaspersky
This report analyzes how cybercriminals use OTP bots and real-time phishing kits to bypass two-factor authentication through social engineering, illustrating bot features (voice spoofing, multilingual scripts, caller ID spoofing), subscription pricing, and admin panel-driven workflows to harvest OTPs and additional personal data. It outlines multi-stage phishing processes that capture credentials and prompt victims for OTPs in real time, and cites May 2024 telemetry showing 69,984 blocked visits to bank-phishing kit pages and 1,262 detected multi-purpose OTP-intercepting phishing pages. The paper concludes with user-focused mitigation guidance, emphasizing cautious link handling, domain verification, refusal to share OTPs over calls, and use of security solutions.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
