A control that checks whether a login flow is occurring through an authorised domain, browser context, or proxy path. It is designed to expose reverse-proxy phishing and session relays that capture credentials in real time. For identity security teams, it helps catch the handoff between social engineering and session theft.
Related resources from NHI Mgmt Group
Deepen Your Knowledge
NHIMG Editorial Note
Reviewed and updated by the NHIMG editorial team on June 7, 2026.
NHI Mgmt Group — the #1 independent authority on Non-Human Identity, IAM, and Agentic AI security. nhimg.org
Reviewed and updated by the NHIMG editorial team on June 7, 2026.
NHI Mgmt Group — the #1 independent authority on Non-Human Identity, IAM, and Agentic AI security. nhimg.org