Greatness PhaaS Adds Device Code Phishing to Bypass MFA and Steal Tokens
The Greatness PhaaS toolkit now offers device-code phishing to bypass MFA via OAuth 2.0 device authorisation flows, commoditising an attack that previously required bespoke adversary infrastructure.
Summary written by editorial AI · Source link below
The commercial phishing-as-a-service (PhaaS) toolkit known as Greatness has become the latest crimeware solution to add support for device code phishing, a rapidly growing cyber threat that abuses the legitimate OAuth 2.0 Device Authorization Grant to bypass Multi-Factor Authentication (MFA) and seize control of user accounts.
"Greatness supports AiTM [adversary-in-the-middle] credential and
Editorial Analysis
Commoditised device-code phishing dramatically lowers the barrier for MFA bypass attacks; enterprises relying solely on push-based MFA face escalating token-theft risk.
Restrict device-code OAuth flows in conditional access policies and accelerate migration to phishing-resistant authentication methods like FIDO2 passkeys.
A commercial phishing toolkit now automates MFA bypass via OAuth device-code flows, threatening enterprises that rely on standard multi-factor authentication.
Forward-looking interpretation drafted by editorial AI under human review — not a reproduction of the source. See methodology.
External link — opens at THN (Feedburner) in a new tab.
More from the Threat Intel Desk
- Attackers conceal phishing lures using invisible Unicode characters1d
- Attackers Hijack MikroTik Routers Through Internet-Exposed SSH Without Authentication1d
- Four REVSTEALER-Linked Modules Disable Windows Update and Defender to Run a Crypto Miner1d
- Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials2d
- Over 5,400 hacked sites serve ClickFix payloads stored on the blockchain2d