Threat actors convince employees to reset MFA for Super Admin accounts in the IAM service to leverage compromised accounts, impersonating users and moving laterally within an organization.
Source: DarkReading
Source Link: https://www.darkreading.com/cloud/hackers-target-high-privileged-okta-accounts-via-help-desk