logo

Hackers target FCC, crypto firms in advanced Okta phishing attacks

ID: 780c5c0b-4967-5203-9d8b-a3521f833f23

STIX ID: report--780c5c0b-4967-5203-9d8b-a3521f833f23

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2024-03-02

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

Researchers discovered an active phishing kit named CryptoChameleon being used to target FCC employees and users of cryptocurrency platforms (Binance, Coinbase, Kraken, Gemini) with near-perfect Okta SSO and other impersonation pages. The attackers combine email, SMS, and voice social engineering, CAPTCHA filtering, and a real-time control panel to capture credentials, MFA tokens, and even photo IDs; Lookout observed active sites, backend logs showing more than 100 successful phishes, and a list of IoCs provided in the report.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.