logo

Okta Flags Customized, Reactive Vishing Attacks Which Bypass MFA

ID: 28b90680-92d3-55c3-9b3b-33ec90c6d4ac

STIX ID: report--28b90680-92d3-55c3-9b3b-33ec90c6d4ac

Feed Name: Infosecurity Magazine (News)

Threat Score
72/100

Date Published: 2026-01-26

Date Updated: 2026-04-22

...
...

Okta Threat Intelligence warns that cybercriminals are combining vishing calls with real-time adaptable phishing kits to socially engineer victims and bypass non-phishing-resistant MFA, enabling account takeover of corporate Google, Microsoft, Okta and cryptocurrency logins. Attackers perform reconnaissance, spoof IT support numbers, direct victims to synchronized fake sign-in pages, capture credentials (sent to Telegram), and coach victims through MFA prompts to gain access.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.