logo

Lapsus$ Claims Access to Okta Systems

ID: 1f858f33-e9c7-5298-8759-251e6a81db1c

STIX ID: report--1f858f33-e9c7-5298-8759-251e6a81db1c

Feed Name: Arctic Wolf Blog

Threat Score
75/100

Date Published: 2022-03-22

Date Updated: 2026-04-26

...
...

### Executive Summary Okta confirmed an incident after Lapsus$ published screenshots claiming superuser/admin access to Okta systems from January 16–21, 2022 via an unauthorized access to a customer support engineer's laptop; the report recommends disabling Okta Support Access, reviewing impersonation events, auditing high-privileged accounts, and resetting credentials for users who changed passwords in January as mitigation steps.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.