
iAuthFlow v2: A $10,000 Phishing Toolkit That Bypasses Password Resets
Breaking NewsCyber CrimeSecuritybrowser-in-the-middle attackHackinghacking newsiAuthFlow v2information security newsIT Information SecurityphishingPierluigi PaganiniSecurity AffairsSecurity News
The iAuthFlow v2 phishing toolkit, sold on a Russian-language cybercrime forum for a base price of $10,000, enables attackers to hijack Google sessions and enroll an attacker-controlled passkey that persists even after password resets. Researchers from Abnormal Security analyzed the toolkit, which also offers additional capability modules for separate purchase. The toolkit employs a browser-in-the-middle attack to maintain access to compromised accounts. No specific dates, CVE IDs, or broader impact metrics were disclosed in the available details. The primary threat involves sustained unauthorized access to victim accounts despite security measures like password changes.