π¨ PoisonSeed phishing kit bypasses FIDO2 by removing secure options from login flows & redirecting users to cloned Microsoft, Google, or Okta pages.
It doesnβt exploit FIDO2βit avoids it.
π Experts warn this is part of a broader phishing evolution using social engineering + session hijacking.
π Full article:
https://www.technadu.com/seed-of-deceit-poisonseed-tricks-users-out-of-fido2-redirects-microsoft-google-and-okta-logins-to-phishing-pages/603376/