Hackers target FCC, crypto firms in advanced Okta phishing attacks
ID: 780c5c0b-4967-5203-9d8b-a3521f833f23
STIX ID: report--780c5c0b-4967-5203-9d8b-a3521f833f23
Feed Name: Bleeping Computer
Researchers discovered an active phishing kit named CryptoChameleon being used to target FCC employees and users of cryptocurrency platforms (Binance, Coinbase, Kraken, Gemini) with near-perfect Okta SSO and other impersonation pages. The attackers combine email, SMS, and voice social engineering, CAPTCHA filtering, and a real-time control panel to capture credentials, MFA tokens, and even photo IDs; Lookout observed active sites, backend logs showing more than 100 successful phishes, and a list of IoCs provided in the report.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
