Tailored ‘vishing’ kits attack SSO accounts worldwide – Google, Microsoft and Okta are at risk, here’s what we know


  • Hackers use adaptable phishing kits with vishing to bypass real-time MFA
  • Victims are profiled, tricked via fake calls and redirected to customized phishing websites
  • Okta urges phishing-resistant 2FA and network controls to block these attacks

Hackers have begun using highly sophisticated, adaptive phishing kits that complement their vishing attacks by adapting in real time, experts have warned.

Security researchers from Okta revealed that they “discovered and dissected” several custom phishing kits that are currently being used to target people’s Google, Microsoft and Okta accounts, as well as a number of cryptocurrency providers.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top