VoidProxy Unmasked: The PhaaS Menace Outwitting MFA and How to Outsmart It

Okta Threat Intelligence has unveiled VoidProxy, a sneaky Phishing-as-a-Service platform. Using the Adversary-in-the-Middle technique, it sidesteps multi-factor authentication like a ninja in a security guard costume. Learn how to protect your Microsoft and Google accounts from these cyber tricksters.

Pro Dashboard

Hot Take:

Who’s ready for the latest episode of Cybercriminals Gone Wild? Introducing VoidProxy, the new Phishing-as-a-Service (PhaaS) platform, here to make your multi-factor authentication (MFA) as useful as a screen door on a submarine. If cybersecurity were a soap opera, this would be the plot twist we’ve all been waiting for. Just remember, folks, the only thing worse than finding a phishing scammer in your inbox is finding out they’re using your Netflix account too!

Key Points:

  • VoidProxy is a Phishing-as-a-Service (PhaaS) platform that targets Microsoft and Google accounts.
  • The platform uses “Adversary-in-the-Middle” (AitM) techniques to bypass MFA.
  • Phishing attacks are initiated through compromised emails, mimicking legitimate services.
  • VoidProxy employs a two-part infrastructure for evasion and real-time information theft.
  • Protection advice includes using phishing-resistant authenticators like Okta FastPass.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?