Here’s what to know about the reported hack on Okta

A hacking group called LAPSUS$ claimed late Monday to have breached systems belonging to Okta, a company that builds services to securely log people in to apps and networks. Okta says it’s used by 15,000 global brands, listing customers including Siemens, Hitachi, Moody’s, and Major League Baseball. The shadowy organization released screenshots that appeared to show access to Okta internal systems, including an internal ticketing system and a Slack chat, Reuters reports. But in an overnight Tweet, Okta CEO Todd McKinnon said the issue appeared to be limited to “an attempt to compromise the account of a third party customer support engineer working for one of our subprocessors” in January that was “investigated and contained.”

We believe the screenshots shared online are connected to this January event. Based on our investigation to date, there is no evidence of ongoing malicious activity beyond the activity detected in January. (2 of 2) — Todd McKinnon (@toddmckinnon) March 22, 2022

Okta didn’t immediately respond to an inquiry from Fast Company. Still, the incident likely has some Okta customers on edge, since the service is used to control access to its customers’ sensitive systems. Matthew Prince, the CEO of hosting provider Cloudflare, tweeted that the company is resetting Okta credentials for employees who recently changed their passwords, “out of an abundance of caution,” and it seems likely that other Okta customers will be carefully looking for evidence they were further affected by any hack. So-called supply chain attacks, where software used by multiple organizations is itself compromised to gain access to other networks, have been an issue in recent major security incidents including the 2017 NotPetya malware attack and the more recent compromise of U.S. federal systems through a hack on the software provider SolarWinds. Lapsus$ claimed that “our focus was ONLY on Okta customers,” not the company itself, CNN reports, though it’s unclear exactly what that means. Okta’s stock price dropped by about 6% in early morning trading, but had recovered by midday.

https://www.fastcompany.com/90733842/okta-hack-lapsus-what-to-know?partner=rss&utm_source=rss&utm_medium=feed&utm_campaign=rss+fastcompany&utm_content=rss

Created 3y | Mar 22, 2022, 4:21:35 PM


Login to add comment

Other posts in this group

DoorDash is expanding its portable benefits program to Georgia next year (exclusive)

DoorDash is expanding its portable benefits pilot program to certain gig workers in Georgia starting next year, the food-delivery giant tells Fast Company.

Dashers (which is wha

Jan 10, 2025, 3:20:07 PM | Fast company - tech
Red Bull and Ford are building a new F1 hybrid race car engine—first as bits, then atoms

To get from 0 to 60 in Formula 1 engine design while competing against organizations with much more experience, Red Bull Ford Powertrains will need extra help (and, no, that boost won’t come in th

Jan 10, 2025, 3:20:06 PM | Fast company - tech
AI taught me to be a (slightly) better badminton player at CES

I am not what you would call a finely tuned athletic machine. I am, if anything, an outdated lawnmower engine held together by duct tape and rust. So when I was offered the opportunity to let AI h

Jan 10, 2025, 3:20:04 PM | Fast company - tech
The L.A. wildfires show how social media has become just another spin room

It’s hard to remember now, as you scroll through a thicket of porn bots, anti-trans activists, and AI slop

Jan 10, 2025, 12:50:06 PM | Fast company - tech
These AI applications are aiding—not replacing—human creatives

There’s been plenty of speculation about whether generative AI could replace—or perh

Jan 10, 2025, 12:50:06 PM | Fast company - tech
What does Meta’s Oversight Board even do?

When Meta established its Oversight Board to adjudicate on decisions it made about removing content from its platforms in 2020, the goal was for the select group of individuals from the media, civ

Jan 10, 2025, 10:40:03 AM | Fast company - tech
6 years ago, Elon Musk offered help during wildfires. This time he blamed DEI

When a devastating wildfire hit California in November 2018, a powerful CEO went on Twitter to ask how his company could help. That

Jan 10, 2025, 1:20:06 AM | Fast company - tech