Five Lessons Learned From Okta’s Support Site Breach

9 months ago 52
News Banner

Looking for an Interim or Fractional CTO to support your business?

Read more
Originally published by Valence. Written by Adrian Sanabria. On September 29th, 2023, security vendor 1Password discovered unauthorized activity in their Okta tenant. An employee unexpectedly received an email that they had requested a report listing Okta administrators. A 1Password employee had recently uploaded a HTTP Archive (a HAR file), which is a browser session logging format that is typically used for troubleshooting, to Okta’s support portal. After the Okta logs didn’t indicate that ...
Read Entire Article