Phishing Protection Overview
Detect and stop adversary-in-the-middle (AiTM) phishing that steals credentials and bypasses MFA.
Arkose Phishing Protection defends against adversary-in-the-middle (AiTM) phishing — attacks where an adversary uses a reverse proxy to sit between your users and your real login page, capturing credentials and session cookies to bypass multi-factor authentication (MFA) in real time. Phishing Protection detects and shuts these attacks down before users are harmed.
How it works
AiTM phishing kits proxy your genuine login page through an attacker-controlled domain: the victim sees a legitimate-looking site while the attacker silently relays traffic, harvesting credentials and MFA session tokens. Because the traffic flows through your real site, these attacks slip past traditional defenses and defeat MFA. Arkose Phishing Protection detects this reverse-proxy interception in real time and stops the session before credentials can be captured and replayed.
Key capabilities
- Real-time AiTM detection — Identifies reverse-proxy phishing as it happens, not after the breach.
- MFA-bypass protection — Stops attackers from relaying credentials and session tokens to defeat MFA.
- No added friction — Legitimate users continue to sign in normally.
How it fits with Titan
Phishing Protection is part of the Titan platform and is delivered together with Arkose Bot Manager. If you have already integrated Bot Manager, the foundation is in place — enabling Phishing Protection is a configuration step on your keys.
Next steps
- Set up Bot Manager — the client + server integration Phishing Protection builds on.
- Bot Manager Overview — how Arkose detection and enforcement work.
To enable Phishing Protection for your keys, contact your Customer Success Manager (CSM).
Updated 3 days ago