Microsoft Passkeys Under Siege: How Vishing Attackers Turn Security Upgrades Into Account Takeovers
5 Articles
5 Articles
Microsoft Passkeys Under Siege: How Vishing Attackers Turn Security Upgrades Into Account Takeovers
Threat actors have found a clever way to flip a Microsoft security feature on its head. They now use fake Entra passkey enrollment pages to hijack Microsoft 365 accounts. The tactic relies on voice calls that sound official. Victims get told their account needs an urgent security upgrade. Okta first spotted the activity. It tracks the group as O-UNC-066. The actor targets companies across food and beverage, technology, healthcare, automotive, co…
Microsoft Entra's access keys have been promoted as one of the safest technologies to replace passwords and reduce phishing attacks. However, Okta researchers have identified a sophisticated campaign that shows that although passkeys are resistant to traditional credential theft, they can still be exploited when criminals manage to manipulate the victim through social engineering. The new coup combines vishing (phishing by voice), a real-time ph…
Okta Warns of Vishing Attacks Targeting Microsoft 365 Customers
The attackers call victims to direct them to phishing websites mirroring Microsoft Entra ID login pages. The post Okta Warns of Vishing Attacks Targeting Microsoft 365 Customers appeared first on SecurityWeek.
Hackers Use Fake Microsoft Entra Passkey Enrollment to Gain Microsoft 365 Access
A threat actor has been targeting organizations spanning multiple sectors with voice-based fake security requests that prompt Microsoft 365 users to enroll a new Entra passkey with an aim to carry out data extortion attacks. The threat actor, tracked by Okta under the moniker O-UNC-066, has deployed a panel-controlled phishing kit that's capable of targeting the passkey enrollment process. The
Coverage Details
Bias Distribution
- 100% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium
