Greatness PhaaS Introduces Device-Code Phishing for MFA Bypass

Greatness PhaaS Introduces Device-Code Phishing for MFA Bypass

First seen 4 Aug 2026, 20:26 UTC ThehackernewsFeeds.4Sysopsthehacker.news 90% similarity 64.5

Article Content

Browse articles
ThreatCluster

Greatness, a phishing-as-a-service platform, has launched a new feature allowing attackers to perform device-code phishing, enabling them to harvest multi-factor authentication (MFA) tokens without needing victims' passwords. This method combines adversary-in-the-middle theft and OAuth consent abuse, effectively turning legitimate Microsoft sign-ins into MFA bypasses. The platform's capabilities pose a significant risk to enterprises relying on MFA for security. The attack vector can potentially impact a wide range of organizations that utilize Microsoft services for authentication. As of now, no specific incidents of exploitation have been reported, but the potential for widespread abuse is high given the ease of access to this tool. Security professionals are urged to remain vigilant against this emerging threat.

Key Points: • Greatness PhaaS now offers device-code phishing to bypass MFA. • Attackers can harvest valid access tokens without passwords. • The new feature combines multiple phishing techniques from a single dashboard.

ThreatCluster AI How this analysis works

Timeline

2026-08-04
Greatness PhaaS feature launched
Greatness introduced device-code phishing, allowing attackers to harvest MFA tokens without passwords, enhancing their phishing capabilities.
Feeds.4Sysops
2026-08-04
Phishing technique detailed
The new phishing method combines adversary-in-the-middle theft and OAuth consent abuse, posing risks to Microsoft sign-in users.
Thehackernews

Community

Browse all →

Tracked Entities in This Story