Facebook Twitter Instagram
    • Privacy Policy
    • Contact Us
    Facebook Twitter Instagram Pinterest Vimeo
    AI Home SecurityAI Home Security
    • Home
    • Home Security
    • Cyber Security
    • Biometric Technology
    Contact
    AI Home SecurityAI Home Security
    Cyber Security

    Okta’s Recent Customer Support Data Breach Impacted 134 Customers

    justmattgBy justmattgNovember 4, 2023No Comments3 Mins Read

    [ad_1]

    Nov 04, 2023NewsroomData Breach / Cyber Attack

    Okta Data Breach

    Identity and authentication management provider Okta on Friday disclosed that the recent support case management system breach affected 134 of its 18,400 customers.

    It further noted that the unauthorized intruder gained access to its systems from September 28 to October 17, 2023, and ultimately accessed HAR files containing session tokens that could be used for session hijacking attacks.

    “The threat actor was able to use these session tokens to hijack the legitimate Okta sessions of 5 customers,” Okta’s Chief Security Officer, David Bradbury, said.

    Three of those affected include 1Password, BeyondTrust, and Cloudflare. 1Password was the first company to report suspicious activity on September 29. Two other unnamed customers were identified on October 12 and October 18.

    Cybersecurity

    Okta formally revealed the security event on October 20, stating that the threat actor leveraged access to a stolen credential to access Okta’s support case management system.

    Now, the company has shared some more details of how this happened.

    It said the access to Okta’s customer support system abused a service account stored in the system itself, which had privileges to view and update customer support cases.

    Further investigation revealed that the username and password of the service account had been saved to an employee’s personal Google account and that the individual had signed-in to their personal account on the Chrome web browser of their Okta-managed laptop.

    “The most likely avenue for exposure of this credential is the compromise of the employee’s personal Google account or personal device,” Bradbury said.

    Okta has since revoked the session tokens embedded in the HAR files shared by the affected customers and disabled the compromised service account.

    Cybersecurity

    It has also blocked the use of personal Google profiles within enterprise versions of Google Chrome, preventing its employees from signing in to their personal accounts on Okta-managed laptops.

    “Okta has released session token binding based on network location as a product enhancement to combat the threat of session token theft against Okta administrators,” Bradbury said.

    “Okta administrators are now forced to re-authenticate if we detect a network change. This feature can be enabled by customers in the early access section of the Okta admin portal.”

    The development comes days after Okta revealed that personal information belonging to 4,961 current and former employees was exposed after its healthcare coverage vendor, Rightway Healthcare, was breached on September 23, 2023. Compromised data included names, Social Security numbers, and health or medical insurance plans.

    Found this article interesting? Follow us on Twitter  and LinkedIn to read more exclusive content we post.



    [ad_2]

    Source link

    Previous ArticleTo Improve Cyber Defenses, Practice for Disaster
    Next Article StripedFly Malware Operated Unnoticed for 5 Years, Infecting 1 Million Devices
    justmattg
    • Website

    Related Posts

    Cyber Security

    Name That Toon: Last Line of Defense

    April 16, 2024
    Cyber Security

    OpenJS Foundation Targeted in Potential JavaScript Project Takeover Attempt

    April 16, 2024
    Cyber Security

    Middle East Cyber Ops Intensify, With Israel the Main Target

    April 16, 2024
    Add A Comment

    Leave A Reply Cancel Reply

    Facebook Twitter Instagram Pinterest
    • Privacy Policy
    • Contact Us
    AI Home Security © 2025 All rights reserved | Designed By ESmartsSolution

    Type above and press Enter to search. Press Esc to cancel.

    ↑