Okta,ポルノ映画白雪姫 the San Francisco-based identity and access management company, reported a security breach on Friday. Hackers gained access to private customer information through its customer support management system.
In a site-wide announcement, Okta Chief Security Officer David Bradbury revealed that hackers viewed content uploaded by some Okta customers related to recent support cases. These files, known as HTTP archive (HAR) files, help support personnel replicate customer browser activity for troubleshooting.
SEE ALSO: 23andMe may have suffered yet another breach – your data is in jeopardy"HAR files can also contain sensitive data, including cookies and session tokens, that malicious actors can use to impersonate valid users," Bradbury said.
Bradbury did not disclose how the credentials were stolen nor if two-factor authentication was in place for the compromised support system. To mitigate the damage, Okta revoked embedded session tokens and advised customers to sanitize credentials within HAR files before sharing.
According to Arstechnica, the initial hack was stopped by security firm BeyondTrust, which alerted Okta to suspicious activity about a month ago. However, due to some flaws within Okta's security model, some actions were still carried out by malicious actors.
Bradbury confirmed that all affected customers have been informed. He also provided IP addresses and browser user agents associated with the hackers for further investigation. He also added that Okta's main production service and Auth0/CIC case management system remain unaffected.
Okta has had its fair share of hacker troubles lately. In March 2022, a group called Lapsus$ accessed an Okta admin panel, allowing them to reset customer passwords and authentication credentials. In December of that same year, Okta's source code was stolen from a GitHub account.
Topics Cybersecurity
Tesla cuts prices of Model 3 and Model Y againReddit just made some big updates to its search function[Update] ‘Loki’ accused of using AI for promo poster — but Disney just debunked this claimBest Prime Day noiseHulu's 'Goosebumps' review: Less slime, more soapWordle today: The answer and hints for October 9Best Prime Day Peloton deal: 24% off Original Peloton BikeWordle today: The answer and hints for October 10'Quordle' today: See each 'Quordle' answer and hints for October 6, 2023Best Prime Day Apple Watch deal: $50 off Apple Watch SE Pixel Watch 3 announced at Made by Google event: It can detect a loss of pulse Browns vs. Bengals 2024 livestream: How to watch NFL online Los Angeles Clippers vs. Dallas Mavericks 2024 livestream: Watch NBA online 'Very demure' demonstrates TikTok's ability to shape modern language Best Dyson deals this week: V12 Detect Slim plus refurbished Airwraps and Supersonics 'Hawk Tuah' girl Haliey Welch has disappeared from public view after crypto rug pull Wordle today: The answer and hints for December 20 Tesla recalls nearly 700,000 vehicles for a warning light issue Giants vs. Falcons 2024 livestream: How to watch NFL for free Sam Soar on TikTok, activism, and getting free books
0.2175s , 9950.2265625 kb
Copyright © 2025 Powered by 【ポルノ映画白雪姫】Okta reveals security breach,Feature Flash