Okta hacked: Here’s latest on the cybersecurity breach, impact on 1Password, and more

Last week, identity and access management company Okta disclosed a hack of its support system, an incident that has now knocked more than $2 billion from the company’s market cap and caused its stock to drop more than 11%. Here are a few things to know about the cybersecurity breach:

What is Okta?

Okta is a cloud-based service that allows IT at a company to manage applications of devices that an employee might have access to.

How did the hackers pull this off?

The attackers were able to view files that had been uploaded by a limited number of Okta customers. The files in question were uploaded during recent support cases. Okta says the attack only impacted its support case management and did not impact the Okta service, which remains operational.

Hackers were able to gain access to stolen credentials through HTTP Archive (HAR) files uploaded by users for troubleshooting purposes. Those files can often include session tokens and cookies, and the hackers were able to use those to impersonate valid users.

Why does this seem familiar?

The company’s products have been tied to recent high-profile hacks of both Caesars Entertainment and the MGM lines of casinos in Las Vegas. Caesars ultimately paid out a ransom of $15 million to the hackers to regain control of its systems while MGM refused to pay the ransom and instead shut down several critical systems, including its electronic key card systems, reservation and booking systems, and even the casino floor. The company has since acknowledged the direct and indirect costs of the attack would cost it more than $100 million.

Okta also made headlines for a cyberattack last year.

Are any notable companies impacted this time?

Okta has more than 18,000 customers. One of the companies impacted by the hack was password management company 1Password, which is currently used by more than 100,000 businesses and individuals. 1Password says that it detects suspicious activity on its Okta instance, which is used to manage employee-facing apps. After a “thorough investigation,” 1Password says that it concluded that no user data was accessed.

What about other Okta customers?

An Okta representative told TechCrunch that the hack impacted around 1% of its customers. The company has already notified all of the customers that were impacted. If you’re an Okta customer, in this particular case no news is good news.

And Okta stock?

After taking a hit this week, shares rose slightly during the trading day on Tuesday but remained little changed in premarket trading on Wednesday.

https://www.fastcompany.com/90972374/okta-breach-2023-1password-impacted-companies-news?partner=rss&utm_source=rss&utm_medium=feed&utm_campaign=rss+fastcompany&utm_content=rss

Établi 2y | 25 oct. 2023, 13:40:07


Connectez-vous pour ajouter un commentaire

Autres messages de ce groupe

‘There is nothing that Aquaphor will not fix’: The internet is in love with this no-frills skin ointment

Aquaphor has become this summer’s hottest accessory.

The no-frills beauty staple—once relegated to the bottom of your bag, the glove box, or a bedside drawer—is now dangling from

3 juil. 2025, 23:50:07 | Fast company - tech
Is Tesla screwed?

Elon Musk’s anger over the One Big Beautiful Bill Act was evident this week a

3 juil. 2025, 17:10:05 | Fast company - tech
The fight over who gets to regulate AI is far from over

Welcome to AI DecodedFast Company’s weekly new

3 juil. 2025, 17:10:03 | Fast company - tech
How your data is collected and what you can do about it

You wake up in the morning and, first thing, you open your weather app. You close that pesky ad that opens first and check the forecast. You like your weather app, which shows hourly weather forec

3 juil. 2025, 10:10:05 | Fast company - tech
Crypto is about to get even bigger thanks to millennials

How the Boomer wealth transfer could reshape global finance.

Born too late to ride the wave of postwar prosperity, but just early enough to watch the 2008 financial crisis decimate some

3 juil. 2025, 10:10:04 | Fast company - tech