Close Menu
Entertainment Industry Reporter
    Facebook X (Twitter) Instagram
    Entertainment Industry Reporter
    • Home
    • Film
    • Television
    • Box Office
    • Reality TV
    • Music
    • Horror
    • Politics
    • Books
    • Technology
    • Popular Music Videos
    • Cover Story
    • Contact
      • About
      • Amazon Disclaimer
      • DMCA / Copyright Disclaimer
      • Privacy Policy
      • Terms and Conditions
    Entertainment Industry Reporter
    You are at:Home»Technology»Okta says hackers stole customer access tokens from support unit
    Technology

    Okta says hackers stole customer access tokens from support unit

    By AdminOctober 21, 2023
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Okta says hackers stole customer access tokens from support unit


    Identity and access giant Okta said a hacker broke into its customer support ticket system and stole sensitive files that can be used to break into the networks of Okta’s customers.

    Okta chief security officer David Bradbury said in a blog post Friday that a hacker used a stolen credential to access the company’s support case management system, which contained browser recording files uploaded by Okta customers for troubleshooting.

    Browser recording sessions (or HAR files) are used for diagnosing problems during a web browsing session, and often include website cookies and session tokens, which if stolen can be used to impersonate a real user account without needing their password or two-factor.

    Bradbury said “customers who were impacted by this have been notified.” It’s not clear how Okta’s support case management system was initially compromised.

    Okta provides organizations and companies with access and identity tools, such as “single sign-on,” which allows employees access to all of a company’s resources on the network with one set of credentials. Okta has around 17,000 customers and manages around 50 billion users, the company said in a March 2023 blog post.

    Okta spokesperson Vitor De Souza told TechCrunch that around 1% of customers are affected by this breach, but declined to provide a specific number.

    Security firm BeyondTrust, which uses Okta, said in its own blog post that it notified Okta of a potential breach on October 2 after it detected an attempted compromise to its network a short time after an administrator shared a browser recording session with an Okta support agent.

    BeyondTrust’s chief technology officer Marc Maiffret said the hacker used a session token from the uploaded browser recording session to create an administrator account on BeyondTrust’s network, which it immediately shut down. Maiffret said the incident “was the result of Okta’s support system being compromised which allowed an attacker to access sensitive files uploaded by their customers.”

    Security journalist Brian Krebs first reported the news. Krebs reported that Okta contained the incident by October 17, citing the company’s deputy chief information security officer Charlotte Wylie.

    This is the latest incident at Okta, which in 2022 said that hackers stole some of its source code. Earlier in 2022, hackers posted screenshots showing access to the company’s internal network after hacking into a company Okta used for customer service.

    Okta’s stock closed down 11% on Friday following news of the breach.

    Read more on TechCrunch:



    Original Source Link

    Share. Facebook Twitter LinkedIn Email Telegram WhatsApp

    Related Posts

    The 7 Best Prime Day Action Camera Deals for Thrill Seekers (2025)

    Save on MacBooks, Windows 11 machines, Chromebooks and others

    Best Prime Day Laptop Deals 2025: MacBooks, Chromebooks, and More

    The best Prime Day deals on Anker power banks, chargers and mobile accessories

    Best Prime Day Beauty Deals 2025: Hair, Skin, and Dental Care

    Save on Kindle ereaders, Echo speakers and more

    Popular Posts

    Why Did My DVDs Stop Working? Disc Rot Explained

    ‘Malcolm in the Middle’ Revival Coming to Disney+

    Kill the Justice League pulled offline after a bizarre game-beating bug

    Heather Gay ‘Single’ and ‘Looking for a Hot Aussie Tradie’

    Miami Woman Stabs Boyfriend in Eye With ‘Rabies Needle’

    Nancy Pelosi hospitalized after injury in Luxembourg

    ‘RHOBH’ Kyle Richards Set To Gain Massive Payout From Divorce

    Categories
    • Books (1,489)
    • Box Office (914)
    • Cover Story (18)
    • Events (11)
    • Featured (26)
    • Film (1,509)
    • Horror (1,497)
    • Lifestyle (5)
    • Music (1,557)
    • Politics (631)
    • Popular Music Videos (930)
    • Reality TV (952)
    • Technology (1,503)
    • Television (1,253)
    • Uncategorized (1)
    Archives
    Useful Links
    • About
    • Contact
    • Privacy Policy
    • DMCA / Copyright Disclaimer
    • Amazon Disclaimer
    • Terms and Conditions
    Categories
    • Books (1,489)
    • Box Office (914)
    • Cover Story (18)
    • Events (11)
    • Featured (26)
    • Film (1,509)
    • Horror (1,497)
    • Lifestyle (5)
    • Music (1,557)
    • Politics (631)
    • Popular Music Videos (930)
    • Reality TV (952)
    • Technology (1,503)
    • Television (1,253)
    • Uncategorized (1)
    Popular Posts

    Trump Media shares climb more than 7%

    Josh Weinstein dating 90 Day Fiance alum according to online clue

    ‘It’s a fight if you want to shoot on film’

    Ludacris Performs While Descending from Atlanta Falcons’ Stadium Roof

    © 2025 Entertainment Industry Reporter. All rights reserved. All articles, images, product names, logos, and brands are property of their respective owners. All company, product and service names used in this website are for identification purposes only. Use of these names, logos, and brands does not imply endorsement unless specified. By using this site, you agree to the Terms & Conditions and Privacy Policy.

    Type above and press Enter to search. Press Esc to cancel.

    We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept All”, you consent to the use of ALL the cookies. However, you may visit "Cookie Settings" to provide a controlled consent.
    Cookie SettingsAccept All
    Manage consent

    Privacy Overview

    This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
    Necessary
    Always Enabled
    Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
    CookieDurationDescription
    cookielawinfo-checkbox-analytics11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics".
    cookielawinfo-checkbox-functional11 monthsThe cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional".
    cookielawinfo-checkbox-necessary11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary".
    cookielawinfo-checkbox-others11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other.
    cookielawinfo-checkbox-performance11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance".
    viewed_cookie_policy11 monthsThe cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data.
    Functional
    Functional cookies help to perform certain functionalities like sharing the content of the website on social media platforms, collect feedbacks, and other third-party features.
    Performance
    Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
    Analytics
    Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
    Advertisement
    Advertisement cookies are used to provide visitors with relevant ads and marketing campaigns. These cookies track visitors across websites and collect information to provide customized ads.
    Others
    Other uncategorized cookies are those that are being analyzed and have not been classified into a category as yet.
    SAVE & ACCEPT