【】

  发布时间:2025-09-15 04:51:43   作者:玩站小弟   我要评论
Okta, the San Francisco-based identity and access management company, reported a security breach on 。

Okta, the San Francisco-based identity and access management company, reported a security breach on Friday. Hackers gained access to private customer information through its customer support management system.

In a site-wide announcement, Okta Chief Security Officer David Bradbury revealed that hackers viewed content uploaded by some Okta customers related to recent support cases. These files, known as HTTP archive (HAR) files, help support personnel replicate customer browser activity for troubleshooting.

SEE ALSO:23andMe may have suffered yet another breach – your data is in jeopardy

"HAR files can also contain sensitive data, including cookies and session tokens, that malicious actors can use to impersonate valid users," Bradbury said.

Bradbury did not disclose how the credentials were stolen nor if two-factor authentication was in place for the compromised support system. To mitigate the damage, Okta revoked embedded session tokens and advised customers to sanitize credentials within HAR files before sharing.

Mashable Light SpeedWant more out-of-this world tech, space and science stories?Sign up for Mashable's weekly Light Speed newsletter.By signing up you agree to our Terms of Use and Privacy Policy.Thanks for signing up!

According to Arstechnica, the initial hack was stopped by security firm BeyondTrust, which alerted Okta to suspicious activity about a month ago. However, due to some flaws within Okta's security model, some actions were still carried out by malicious actors.

Bradbury confirmed that all affected customers have been informed. He also provided IP addresses and browser user agents associated with the hackers for further investigation. He also added that Okta's main production service and Auth0/CIC case management system remain unaffected.

Okta has had its fair share of hacker troubles lately. In March 2022, a group called Lapsus$ accessed an Okta admin panel, allowing them to reset customer passwords and authentication credentials. In December of that same year, Okta's source code was stolen from a GitHub account.

TopicsCybersecurity

  • Tag:

相关文章

  • Fake news reports from the Newseum are infinitely better than actual news

    Actual investigative journalism: who needs it?At least, that's what some people will likely conclude
    2025-09-15
  • 年會節目創意節目

    前言 :公司年會創意表演有哪些節目可以推薦?2020即將進入尾聲,各路行政人事又要開始奔赴年會戰場了 ,員工們也是時候在年會上露一手才藝了 。去年的新東方年會上 ,一首改編的《沙漠駱駝》成功得到俞敏洪校長青睞
    2025-09-15
  • 軍中綠花簡譜

    前言:答:《軍中綠花》是流行於軍營中的一首歌曲 ,該曲朗朗上口  ,編曲較為民謠化 ,卻透露著一種純淨的情懷,由歌手小曾創作並演唱 ,在軍營中口口相傳 ,頗為流行。另外軍中綠花現在已經引申成為部隊的女兵 。歌曲詞來
    2025-09-15
  • 水杯壁很多氣泡能喝嗎

    保溫杯蓋裏麵是泡沫健康嗎?如果純淨水存放時間太長了,使其水變質了,倒入,這樣的水是不可以喝的,會對健康造成危害,容易造成腸胃的疾病,出現腹痛、。水杯壁很多氣泡能喝嗎-業百科如果是加工過程中材質不均勻
    2025-09-15
  • The five guys who climbed Australia's highest mountain, in swimwear

    Climbing a freezing cold mountain is already hard enough work. But in briefs? Nope. 。It's too late fo
    2025-09-15
  • 水靈靈的好女人是什麽梗

    農村俗語:“男怕柿子女怕梨,母豬最怕西瓜皮”是啥意思?有何...農村俗語是千百年來中國文化長河中孕育出來的一種奇特文化,它雖然難登大雅之堂,但它卻深受廣大農民朋友的喜愛,因為它是農民朋友,經過長期生活
    2025-09-15

最新评论