Author: Security Weekly - A CRA Resource - Bewertung: 0x - Views:0
The Black Site phishing kit pairs with an evasion tool called Cloaked.gg to perform adversary-in-the-middle attacks. By acting as a reverse proxy between the victim and the legitimate website, it can capture credentials and authenticated session data during the login process.
This technique targets the session itself rather than just the password, which is why traditional multi-factor authentication alone may not prevent account compromise. It also includes features intended to reduce detection by some anti-phishing technologies, raising the bar for defenders.
If your organization already uses MFA, what additional controls would help detect or stop session-hijacking phishing attacks?
Subscribe to our podcasts: https://securityweekly.com/subscribe
#Phishing #MFA #SecurityWeekly #Cybersecurity #InformationSecurity #AI #InfoSec
SOCIAL SHARE CARD GENERATOR