LIVEΒ·
SkylineWire Logo

SkylineWire

Global News & Market Intelligence Β· Verified from Official Dispatches

Editions:
Home
LIVEMARKETS:
S&P 500 5,640.20 (+0.45% β–²)|NASDAQ 17,855.10 (+0.62% β–²)|BRENT CRUDE $82.40 (-0.85% β–Ό)|SAF FUEL $2,140/t (+1.2% β–²)
S&P 500 5,640.20 (+0.45% β–²)|NASDAQ 17,855.10 (+0.62% β–²)|BRENT CRUDE $82.40 (-0.85% β–Ό)|SAF FUEL $2,140/t (+1.2% β–²)
BreakingDeveloping Storyβœ“ Verified Reporting
Cybersecurity· 🌍 Global

Greatness PhaaS Toolkit Adds Device Code Phishing for MFA Bypass

The Greatness phishing-as-a-service platform has integrated device code phishing capabilities to bypass MFA and hijack user accounts using OAuth 2.0 protocols.

By Skyline Wire Newsroom Β· Published Source: The Hacker News Β· Verified Reporting

Key Story Metrics & Context

Industry Sector:Cybersecurity
Companies Impacted:Global Holdings
Geographic Scale:Global 🌍
Reporting Status:βœ“ Multi-Source Verified
Greatness PhaaS Toolkit Adds Device Code Phishing for MFA Bypass

Executive Brief & Verified Analysis

βœ“ OFFICIAL SOURCES REVIEWED

Executive Summary

The Greatness phishing-as-a-service platform has integrated device code phishing capabilities to bypass MFA and hijack user accounts using OAuth 2.0 protocols.

Why This Matters

Key strategic implication: Greatness PhaaS has officially added support for device code phishing.

Market Impact

Verified for Global Holdings. Primary market adjustment vector.

Source Verification

Cross-referenced across regulatory dispatches, official press releases, and verified wire filings.

Strategic Implications

  • βœ“Greatness PhaaS has officially added support for device code phishing.
  • βœ“The new feature leverages the OAuth 2.0 Device Authorization Grant to bypass MFA.
  • βœ“This shift demonstrates a move toward session token theft rather than traditional credential harvesting.

The Greatness phishing-as-a-service (PhaaS) platform has expanded its operational capabilities by integrating device code phishing, according to The Hacker News. This update allows threat actors to exploit the OAuth 2.0 Device Authorization Grant protocol, effectively circumventing Multi-Factor Authentication (MFA) protections to gain unauthorized access to enterprise and consumer accounts.

Greatness has traditionally relied on adversary-in-the-middle (AiTM) techniques to harvest credentials. By adding support for device code phishing, the toolkit now offers a secondary vector to compromise accounts that utilize modern authentication standards. This method typically involves tricking users into entering a short alphanumeric code on a legitimate-looking but attacker-controlled interface, which then provides the attacker with a persistent access token.

Technical Mechanism Overview

FeatureFunctionalityProtocolImpact
AiTM CredentialReal-time harvestingHTTP/HTTPSMFA Bypass
Device Code PhishingToken acquisitionOAuth 2.0Account Hijacking

This development signifies a shift in how automated phishing kits operate. By integrating these protocols directly into the service architecture, Greatness lowers the barrier to entry for attackers who lack the technical expertise to manually weaponize OAuth 2.0 device flow vulnerabilities.

Why It Matters

The integration of OAuth 2.0 abuse into commercialized phishing kits suggests that standard MFA implementations are no longer sufficient to stop sophisticated automated threats. Organizations relying solely on legacy MFA or simple push notifications are increasingly vulnerable to these token-theft tactics. This transition indicates that PhaaS operators are prioritizing session hijacking over simple credential harvesting, as persistent tokens often provide long-term access that remains active even after an initial password reset. Security teams must transition toward FIDO2-compliant security keys to mitigate these specific device code exploitation risks.

Expected Next Steps

  • 1Security vendors likely to update detection signatures for OAuth device grant requests.
  • 2Organizations expected to push for FIDO2-compliant hardware security keys.
  • 3Increased monitoring of OAuth application registrations in enterprise cloud environments.

Frequently Asked Questions

Greatness is a commercial phishing-as-a-service (PhaaS) toolkit used by cybercriminals to conduct credential harvesting attacks.

It exploits the OAuth 2.0 Device Authorization Grant, allowing attackers to trick users into authorizing a device, thereby granting the attacker a session token without needing a second factor.

The update enables easier session hijacking, allowing attackers to maintain account access even if the victim changes their password.

Source Transparency & Verified Dispatches

βœ“ Verified Primary Data
βœ“
The Hacker NewsπŸ’Ό Corporate Dispatch
Source β†—

Reader Discussion & Insights

Leave a Comment

Loading discussion thread...

Get Breaking Global Intel in Your Inbox

Subscribe to the Skyline Wire AI Daily Briefing. Direct insights across Aviation, Tech, EVs, and Markets.

Original announcement link: The Hacker News

cybersecurityphishingoauthmfagreatness
greatness phaasdevice code phishingoauth 2.0 device authorization grantmfa bypassadversary in the middlecybersecurity threataitm credential theft