• Okta denies it was hacked again after data appears on hacking sit

    From TechnologyDaily@1337:1/100 to All on Tue Mar 12 15:15:05 2024
    Okta denies it was hacked again after data appears on hacking site

    Date:
    Tue, 12 Mar 2024 15:06:45 +0000

    Description:
    "It's not ours," says Okta, suggesting hackers picked the data up elsewhere
    on the internet.

    FULL STORY ======================================================================

    A hacker has shared a new database on an underground forum, claiming it contained data stolen from Okta - however the company begs to differ.

    In late October 2023, cybercriminals broke into Okta systems and stole client session cookies, potentially giving them access to those companies networks, and opening the doors to malware and ransomware attacks. Subsequent investigation showed that all of Oktas customers were affected.

    Now, almost half a year later, a hacker with the alias Ddarknotevil posted a new database on a dark web forum, claiming it contained data on 3,800 Okta customers, BleepingComputer reported. Another Okta breach? Apparently not...

    "Today, I have uploaded the Okta database for you all, This Breach is being shared in behife @IntelBroker - [Cyber ] thanks for reading and enjoy!," the thread said. "In September 2023, Okta, an IT service management company, suffered a data breach that led to the exposure of 3.8 thousand customer support users."

    The database contains user IDs, full names, company names, office addresses, phone numbers, email addresses, positions/roles, and other information.

    However, being asked about the database, Okta told the publication that the data didnt belong to it, and that it was probably simply scraped from the internet.

    "This is not Okta's data, and it is not associated with the October 2023 security incident," an Okta spokesperson told BleepingComputer . "We cannot determine the source of this data or its accuracy, but we noted that some fields have dates from over ten years ago. We suspect that this information may be aggregated from public information sources on the Internet."

    The publication also found that cybersecurity firm KELA analyzed the data and concluded that it belonged to the National Defense Information Sharing and Analysis Center. It was apparently stolen in July last year, and published by a known leaker IntelBroker. More from TechRadar Pro Okta could be facing more cyberattacks following customer support hack Here's a list of the best firewalls around today These are the best endpoint security tools right now



    ======================================================================
    Link to news story: https://www.techradar.com/pro/security/okta-denies-it-was-hacked-again-after-d ata-appears-on-hacking-site


    --- Mystic BBS v1.12 A47 (Linux/64)
    * Origin: tqwNet Technology News (1337:1/100)