Security1 distinct publisher3 min readUpdated
Okta Threat Intelligence says as-a-service phishing kits now let a caller change what the target sees in real time, synced to genuine MFA prompts. Push and OTP were not built to survive that.
The Watch · Security desk
Compiled by The WatchSomething wrong?How this is made
Okta Threat Intelligence says it has detected and dissected multiple custom phishing kits built specifically for the people making the calls in vishing campaigns [1]. The kits are sold on an as-a-service basis and are being used by a growing number of intrusion actors against Google, Microsoft, Okta and a range of cryptocurrency providers [2], which moves phone-based social engineering out of the realm of talented individuals and into tooling anyone can rent.
The interesting part is not credential capture. It is the plumbing. According to Okta, the kits intercept credentials while also presenting the supporting context needed to talk a user into approving an MFA challenge or taking other actions the attacker wants [3], and callers can adapt them on the fly to control which pages appear in the target's browser so that the screen matches both the caller's script and whatever legitimate MFA challenge the caller is being shown [4]. Okta attributes this to client-side scripts that let the actor drive the authentication flow in the victim's browser in real time while delivering verbal instructions or reacting to what the victim says [5]. Okta's researchers say the kits appear, based on common features, to have evolved from the same lineage [6].
The sequence Okta describes is unglamorous and repeatable. Reconnaissance establishes user names, the apps they use, and the phone numbers used in IT support calls [7]. The actor stands up a customised phishing page and calls the target while spoofing the company or its support hotline number [8], then uses an IT support or security pretext to get the user to browse to the page [9]. Credentials typed there are automatically forwarded to the actor's Telegram channel [10]. The actor enters them into the real sign-in page, sees which MFA challenge comes back [11], and updates the phishing site in real time with pages that back up the verbal request for an OTP, a push approval, or something else [12]. For push, Okta says the actor can pick an option in the command-and-control panel that sends the target's browser to a page implying a push has been sent, which lends plausibility to a prompt the user never initiated [13].
That is the whole argument against the current second-factor estate. Okta says these hybrid operations also defeat push with number matching, and states plainly that number matching is not phishing-resistant by definition, because a social engineer on the phone can simply tell the user which number to pick [14]. Moussa Diallo, a threat researcher at Okta Threat Intelligence, said the synchronisation between browser and script can be used to defeat any form of MFA that is not phishing-resistant [15]. Okta's published excerpt contrasts this with users required to sign in using phishing-resistant methods such as Okta FastPass, though the text we have breaks off mid-sentence [16]. Okta has issued a detailed customer advisory covering the capabilities of two of the kits [17].
Two things to watch. First, whether organisations that ticked the MFA box with number matching now treat that as a known-bypassable control rather than a finished project [14]. Second, the help desk: the recon step specifically collects the numbers used in support calls, and the call spoofs the hotline [7][8], so any process where the user is expected to judge whether the caller is real is already compromised. The kits do not break cryptography. They break the assumption that a user watching a familiar-looking screen is watching their own session.
Follow any of these and your For You feed starts watching them — no settings page required.
Ranked by verification strength, evidence, and original report placement.
Okta Threat Intelligence has detected and dissected multiple custom phishing kits that have evolved to meet the specific needs of voice-based social engineers (callers) in vishing campaigns.
The kits can be adapted on the fly by callers to control what pages are presented in the user's browser, in order to sync with the caller's script and whatever legitimate MFA challenges the caller is presented with as they attempt to sign in.
The most critical feature is client-side scripts that allow threat actors to control the authentication flow in the browser of a targeted user in real time while they deliver verbal instructions or respond to verbal feedback from the target.
The phishing kits appear, based on common features, to have evolved from the same lineage to specifically meet the needs of callers interacting with targeted users in real time.
Okta's post contrasts these cases with users who are required to sign in with phishing-resistant methods such as Okta FastPass; the supplied text of the post ends mid-sentence at that point.
Okta Threat Intelligence has published a detailed threat advisory for customers providing an inside look at the capabilities of two such kits used by intrusion actors.
Evidence-backed comparisons of source perspectives and observed adoption signals. Read the methodology
Which Builder, Operator, and Investor concerns the observed source mix emphasized—not a truth score.
Evidence, demonstrated adoption, hype gap, incentives, and confidence are assessed independently, each on its own current evidence. How these are measured.
First-party teardown, nothing verifiable
The mechanics are described with unusual specificity for a vendor blog: named kit capability (client-side session orchestration), a step-by-step attack sequence, Telegram exfiltration, C2 panel behaviour for fake push pages, and a concrete argument about number matching. But it is a single first-party source with no kit names, actor names, indicators, dates or victim counts, and the substantiating two-kit analysis is a customer-only advisory. Nothing in the cluster can be independently checked.
Vendor-reported use, unquantified
There is a real usage disclosure: Okta says the kits are sold as-a-service, are used against Google, Microsoft, Okta and crypto providers, and that orchestration features are being copied into newer kits with per-service bespoke panels. That is more than a proof of concept. It is also entirely unquantified, with no actors, campaigns, victim numbers or timeframe, and no second party observing the same kits.
Sound mechanism, over-broad conclusion
The mechanism and the number-matching argument are well made and modestly framed. The overshoot sits in the universal claim that this synchronisation defeats any form of MFA that is not phishing-resistant, in the prediction of a wave of voice-enabled phishing, and in an unquantified 'growing number of actors', all resolving to a recommendation to buy into the publisher's own authenticator. The gap is moderate rather than severe because the core technical claims are plausible and internally consistent.
Vendor research ending in its own SKU
The sole source is an identity vendor publishing threat research whose stated remedy is enrolment in Okta FastPass and passkeys, with a customer-only advisory as the gated deliverable. Okta is also one of the brands the kits target, giving it both defensive credibility and a direct commercial interest in the conclusion that push and OTP are insufficient.
Credible mechanics, thin corroboration
Confidence is limited by structure rather than plausibility: one first-party publisher, a gated advisory, no indicators or named actors, and unquantified adoption. The technical account is coherent and consistent with how such kits are known to work, and the number-matching argument stands on its own logic, so the central finding is credible even though little of it can be independently confirmed from the supplied material.
build
Grok 4.6 lands in Copilot two days after launch, and the model picker becomes a procurement problem1 distinct publisher
product
Washington's secret AI test is coming for open weights, and release dates go with it2 distinct publishers
invest
Your 2027 compute plan was priced before the states started taxing electrons1 distinct publisher
product
The AI-wrote-it claim died in eight hours. The Actions injection pattern did not.1 distinct publisher
Distinct publishers with included, body-backed reporting in this cluster.
1 article · August 19, 2026