Texts Impersonating Duo to Steal Passcodes

Description

A threat actor may impersonate Duo in text messages in order to induce a person to provide Duo passcodes so that they can access the person’s account for malicious purposes. Prior to sending a person text messages to steal Duo passcodes, the threat actor has already stolen a user’s UMICH login credentials and mobile number (possibly through a fake login page or other phishing scam).