Okta Lapsus$ breach: ‘No evidence’ of malicious activity but supply chain attack fears linger
https://techmonitor.ai/technology/cybersecurity/lapsus-okta-attack-supply-chain-cybersecurity
Okta says there is “no evidence” of malicious activity resulting from an alleged cybersecurity breach by hacking gang Lapsus$, despite claims from the group today that the single sign-on provider has become its latest victim. However, Lapsus$ says it has enough information to target Okta’s customers, sparking fears that damaging supply chain attacks could follow.
According to multiple reports, Lapsus$ posted screenshots to its Telegram channel purporting to show it gaining access to superuser and admin accounts for Okta’s systems. “For a service that powers authentication systems to many of the largest corporations, I think these security measures are pretty poor,” the message reads.