Testing your Okta visibility and detection with Dorothy and Elastic Security
ID: 7585a8e7-9ae2-5a4e-aaa9-bc6217b347b5
STIX ID: report--7585a8e7-9ae2-5a4e-aaa9-bc6217b347b5
Feed Name: Elastic Security Labs
This report presents Dorothy, a free tool that simulates attacker actions in Okta SSO (Discovery, Persistence, Defense Evasion) to help teams validate visibility and detections, and shows how Elastic Security ingests Okta system logs via Fleet/Filebeat and applies open detection rules to alert on suspicious behavior; it functions as a practical guide to measure and improve monitoring of cloud identity systems rather than documenting a specific incident.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
