Okta Customer Support System Breach: Lessons in Supply Chain Risks and Cybersecurity
ID: 2a6aa0f6-36b2-53f3-b3f9-e8baeed0dc07
STIX ID: report--2a6aa0f6-36b2-53f3-b3f9-e8baeed0dc07
Feed Name: SOCRadar Blog
This SOCRadar report analyzes the 2023 Okta customer support system breach (stolen HAR files enabling session hijacking) within the context of major 2023 supply-chain incidents (MOVEit, Boeing via Citrix Bleed, Uber via third-party backup). It highlights stealer-malware leaks (~50,000 credential pairs, including corporate/Fortune 500 accounts), active exploitation by ransomware groups (LockBit, Cl0p), and the systemic risk to IAM/SSO/MFA services, concluding with mitigations such as FIDO2/passwordless, stricter help-desk verification, zero-trust, and continuous monitoring.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
