Friday, May 16, 2025
LBNN
  • Business
  • Markets
  • Politics
  • Crypto
  • Finance
  • Energy
  • Technology
  • Taxes
  • Creator Economy
  • Wealth Management
  • Documentaries
No Result
View All Result
LBNN

Okta’s Latest Security Breach Is Haunted by the Ghost of Incidents Past

Simon Osuji by Simon Osuji
October 25, 2023
in Artificial Intelligence
0
Okta’s Latest Security Breach Is Haunted by the Ghost of Incidents Past
0
SHARES
0
VIEWS
Share on FacebookShare on Twitter


“This is the second time Cloudflare has been impacted by a breach of Okta’s systems,” a group of Cloudflare engineers wrote on Friday. They went on to share a list of recommendations for how Okta can improve its security posture: “Take any report of compromise seriously and act immediately to limit damage. Provide timely, responsible disclosures to your customers when you identify that a breach of your systems has affected them. Require hardware keys to protect all systems, including third-party support providers.”

The Cloudflare engineers added that they view taking protective steps like these as “table stakes” for a company like Okta that provides such crucial security services to so many organizations.

When WIRED asked Okta a series of questions about what steps it is taking to improve customer service defenses in the wake of the two breaches, and why there appears to be a lack of urgency when the company receives reports of potential incidents, the company declined to comment. A spokesperson said it would share more information about these subjects soon.

“I really want to know what technical controls Okta had implemented following the 2022 breach, and why this time will be different,” says Evan Johnson, cofounder of RunReveal, which develops a system visibility and incident detection tool. “My hunch is they did not roll out hardware security keys, or didn’t roll them out for their contractors doing support.”

Jake Williams, a former US National Security Agency hacker and current faculty member at the Institute for Applied Network Security, emphasizes that “the issue is bigger than Okta,” noting that software supply chain attacks and the volume of hacks companies must defend against is significant. “It’s unfortunately common for service providers of any size to have trouble believing they are the source of an incident until definitive proof is offered,” he says.

Still, Williams adds, “there’s a pattern here with Okta, and it involves outsourced support.” He also notes that one of the remediations Okta suggested to customers in the wake of the recent incident—carefully removing support session tokens that could be compromised from troubleshooting data—is not realistic.

“Okta’s suggestion—that somehow the customer must be responsible for stripping session tokens from the files they specifically request for troubleshooting purposes—is absurd,” he says. “That’s like handing a knife to a toddler and then blaming the toddler for bleeding.”



Source link

Related posts

Jackrabbit OG2 Pro and XG Pro Review (2025): Little and Peppy

Jackrabbit OG2 Pro and XG Pro Review (2025): Little and Peppy

May 16, 2025
Motorola Razr Ultra and Razr (2025) Review: Gorgeous Folding Phones

Motorola Razr Ultra and Razr (2025) Review: Gorgeous Folding Phones

May 16, 2025
Previous Post

Does Ryoshi Own $1 Billion in Shiba Inu?

Next Post

Shell to shed 200 jobs amid low-carbon, hydrogen pullback

Next Post
Shell to shed 200 jobs amid low-carbon, hydrogen pullback

Shell to shed 200 jobs amid low-carbon, hydrogen pullback

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

RECOMMENDED NEWS

6 Best Phones With Headphone Jacks (2024): Flagship, Budget, and Dongle Recommendations

6 Best Phones With Headphone Jacks (2024): Flagship, Budget, and Dongle Recommendations

1 year ago
How one African health tech firm is expanding access to affordable health care in Africa

How one African health tech firm is expanding access to affordable health care in Africa

1 year ago
Housing Minister inaugurates task force on housing reform

Housing Minister inaugurates task force on housing reform

1 year ago
Kevin Costner Horizon Saga Premieres in 2 Parts Summer 2024

Kevin Costner Horizon Saga Premieres in 2 Parts Summer 2024

2 years ago

POPULAR NEWS

  • Ghana to build three oil refineries, five petrochemical plants in energy sector overhaul

    Ghana to build three oil refineries, five petrochemical plants in energy sector overhaul

    0 shares
    Share 0 Tweet 0
  • When Will SHIB Reach $1? Here’s What ChatGPT Says

    0 shares
    Share 0 Tweet 0
  • Matthew Slater, son of Jackson State great, happy to see HBCUs back at the forefront

    0 shares
    Share 0 Tweet 0
  • Dolly Varden Focuses on Adding Ounces the Remainder of 2023

    0 shares
    Share 0 Tweet 0
  • US Dollar Might Fall To 96-97 Range in March 2024

    0 shares
    Share 0 Tweet 0
  • Privacy Policy
  • Contact

© 2023 LBNN - All rights reserved.

No Result
View All Result
  • Home
  • Business
  • Politics
  • Markets
  • Crypto
  • Economics
    • Manufacturing
    • Real Estate
    • Infrastructure
  • Finance
  • Energy
  • Creator Economy
  • Wealth Management
  • Taxes
  • Telecoms
  • Military & Defense
  • Careers
  • Technology
  • Artificial Intelligence
  • Investigative journalism
  • Art & Culture
  • Documentaries
  • Quizzes
    • Enneagram quiz
  • Newsletters
    • LBNN Newsletter
    • Divergent Capitalist

© 2023 LBNN - All rights reserved.