AI

Mandiant Finds ShinyHunters

H8H Admin February 06, 2026 24 days ago 23 views
Mandiant Finds ShinyHunters

Photo by Pascal 📷 on Pexels (pexels.com) | Source: Pexels

Google-owned Mandiant on Friday said it identified an "expansion in threat activity" that uses tradecraft consistent with extortion-themed attacks orchestrated by a financially motivated hacking group known as ShinyHunters.

Key Highlights

  • The attacks leverage advanced voice… Google-owned Mandiant on Friday said it identified an "expansion in threat activity" that uses tradecraft consistent with extortion-themed attacks orchestrated by a financially motivated hacking grou… The kits are so good that vishing is growing more popular, but there is a solution.
  • Hackers use adaptable phishing kits with vishing to bypass MFA in real timeVictims are profiled, tricked via spoofed calls, and redirected to customized phishing sitesOkta u… Kaspersky warns of scam using OpenAI invitations to send deceptive emails, promoting fraudulent offers, and vishing to steal data.
  • Fraudsters send emails from legitimate OpenAI addresses to trick usersDeceptive organization names hide malicious links designed to capture sensitive informationBusinesses a… Threat actors posing as IT support teams use phishing kits to generate fake login sites in real-time to trick victims into handing over credentials Cybercriminals are combining vishing attacks with phishing sites which can be altered in real-time to social engineer victims and bypass multi-factor authentication (MFA) protection, the Okta Threat … Mandiant analyzed ShinyHunters' MO, detailing how it steals login and MFA codes.
  • ShinyHunters use vishing and custom phishing pages to bypass SSO protections Stolen MFA codes grant access to platforms like Salesforce, Microsoft 365, and DropboxOther grou….

Why This Matters

This development highlights the rapid pace of change in the technology sector. As the industry continues to evolve, staying informed about these trends is crucial for professionals and enthusiasts alike.

This article was compiled from multiple sources including Internet - Mandiant Finds ShinyHunters-Style Vishing Attacks Stealing MFA to Breach SaaS Platforms.

Stay tuned to Hack8Hide for the latest technology news and cybersecurity updates.

Enjoyed this article?

If you found this content helpful, consider supporting the author to keep the site ad-free and running.

Support / Buy me a Coffee

References & Sources

  1. Internet - Mandiant Finds ShinyHunters-Style Vishing Attacks Stealing MFA to Breach SaaS Platforms — https://thehackernews.com/2026/01/mandiant-finds-shinyhunters-using.html
  2. TechRadar - Custom-made 'vishing' kits are attacking SSO accounts across the world - Google, Microsoft and Okta under threat, here's what we know — https://www.techradar.com/pro/security/custom-made-vishing-kits-are-attacking-ss...
  3. TechRadar - Beware, hackers have hijacked OpenAI’s 'invite your team' feature to break into your business — https://www.techradar.com/pro/beware-hackers-have-hijacked-openais-invite-your-t...
  4. Infosecurity Magazine - Okta Flags Customised, Reactive Vishing Attacks Which Bypass MFA — https://www.infosecurity-magazine.com/news/okta-flags-vishing-attacks-which/
  5. TechRadar - 'The breadth of targeted cloud platforms continues to expand': Google's security team takes a look at how ShinyHunters have rolled out so many SSO scams recently — https://www.techradar.com/pro/security/the-breadth-of-targeted-cloud-platforms-c...
Share this article