Lapsus$ Claims Access to Okta Systems
ID: 1f858f33-e9c7-5298-8759-251e6a81db1c
STIX ID: report--1f858f33-e9c7-5298-8759-251e6a81db1c
Feed Name: Arctic Wolf Blog
Threat Score
### Executive Summary Okta confirmed an incident after Lapsus$ published screenshots claiming superuser/admin access to Okta systems from January 16–21, 2022 via an unauthorized access to a customer support engineer's laptop; the report recommends disabling Okta Support Access, reviewing impersonation events, auditing high-privileged accounts, and resetting credentials for users who changed passwords in January as mitigation steps.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
