PoisonSeed Hackers Bypass FIDO Keys Using QR Phishing and Cross-Device Sign-In Abuse
Cybersecurity researchers have disclosed a novel attack technique
that allows threat actors to bypass Fast IDentity Online (FIDO) key
protections by deceiving users into approving authentication
requests from spoofed company login portals. The activity, observed
by Expel as part of a phishing campaign in the wild, has been
attributed to a threat actor named PoisonSeed, which was recently
flagged
Read more https://thehackernews.com/2025/07/poisonseed-hackers-bypass-fido-keys.html