时间:2026-02-21 12:56:11 来源:网络整理编辑:時尚
Okta, the San Francisco-based identity and access management company, reported a security breach on
Okta, the San Francisco-based identity and access management company, reported a security breach on Friday. Hackers gained access to private customer information through its customer support management system.
In a site-wide announcement, Okta Chief Security Officer David Bradbury revealed that hackers viewed content uploaded by some Okta customers related to recent support cases. These files, known as HTTP archive (HAR) files, help support personnel replicate customer browser activity for troubleshooting.
SEE ALSO:23andMe may have suffered yet another breach – your data is in jeopardy"HAR files can also contain sensitive data, including cookies and session tokens, that malicious actors can use to impersonate valid users," Bradbury said.
Bradbury did not disclose how the credentials were stolen nor if two-factor authentication was in place for the compromised support system. To mitigate the damage, Okta revoked embedded session tokens and advised customers to sanitize credentials within HAR files before sharing.
According to Arstechnica, the initial hack was stopped by security firm BeyondTrust, which alerted Okta to suspicious activity about a month ago. However, due to some flaws within Okta's security model, some actions were still carried out by malicious actors.
Bradbury confirmed that all affected customers have been informed. He also provided IP addresses and browser user agents associated with the hackers for further investigation. He also added that Okta's main production service and Auth0/CIC case management system remain unaffected.
Okta has had its fair share of hacker troubles lately. In March 2022, a group called Lapsus$ accessed an Okta admin panel, allowing them to reset customer passwords and authentication credentials. In December of that same year, Okta's source code was stolen from a GitHub account.
TopicsCybersecurity
Researchers create temporary tattoos you can use to control your devices2026-02-21 12:31
國產巨獸大片即將上映 《大雪怪》將帶來哪些驚喜?2026-02-21 12:16
《解憂之父子除魔》笑鬧上線 東北笑星宋曉峰失憶尋子2026-02-21 12:04
聚焦未來新影集團《勇士號衝向台風》 、《青春之船》項目啟動發布會2026-02-21 12:02
Hiddleswift finally followed each other on Instagram after 3 excruciating days2026-02-21 11:44
《錦衣衛之殘陽如血》今日上線 錦衣衛誓死捍衛正義2026-02-21 10:49
電影《藍百萬2》正在熱播 兄弟反目引爭議2026-02-21 10:31
《高興逮笨賊》口碑發酵,另類解讀兒童電影2026-02-21 10:27
Over 82,000 evacuate as Blue Cut fire rapidly spreads in southern California2026-02-21 10:26
《大漠悍刀行》定檔 8月 5日 ,末代鏢師沙海除奸邪保家國2026-02-21 10:15
U.S. government issues warning on McDonald's recalled wearable devices2026-02-21 12:50
何藍逗被下連環套,幕後黑手弄巧成拙2026-02-21 12:26
《鼠膽英雄》曝光喜劇特輯 佟麗婭烤羊肉串狂飆方言2026-02-21 12:16
這篇短小說 ,有望讓國產科幻電影再刷票房新高2026-02-21 12:08
Mall builds real2026-02-21 11:52
電影《中國機長》路演開啟 杜江演技獲機長原型認可2026-02-21 11:31
電影《共同命運》定檔8月30日2026-02-21 10:54
FLOW福祿電子煙攜手電影《跳舞吧 !大象》,為影迷帶來夏日富能量 !2026-02-21 10:21
Dog elected for third term as mayor of Minnesota town2026-02-21 10:16
《春江花月夜》是陳立農首部擔綱主演的電影2026-02-21 10:12