Authentication firm Okta says it has found no evidence of new attack after hackers claim breach

Authentication firm Okta says it has found no evidence of new attack after hackers claim breach


In this photo illustration an Okta logo seen displayed on a smartphone.

Rafael Henrique | SOPA Images | LightRocket | Getty Images

Identity management firm Okta has said it found no evidence of ongoing malicious activity after a group called Lapsus$ posted pictures claiming to have hacked the company.

Lapsus$ posted screenshots on its Telegram channel late Monday claiming it had access to a number of Okta’s systems. The hacking group said it did not access or steal any databases from Okta, but instead was focused on accessing its customers.

Okta said Tuesday that it had “detected an attempt to compromise the account of a third party customer support engineer working for one of our subprocessors” in January.

“The matter was investigated and contained by the subprocessor. We believe the screenshots shared online are connected to this January event. Based on our investigation to date, there is no evidence of ongoing malicious activity beyond the activity detected in January,” the company added.

Shares of Okta were down around 7% in pre-market trade in the U.S.

Okta is an authentication and identity management software company that is used by more than 15,000 organizations. Any data breach of Okta has raised concerns that hackers could get access to other organizations using Okta’s products.

Thousands of companies use Okta to secure and manage their identities. Through private keys retrieved within Okta, the cyber gang may have access to corporate networks and applications,” Ekram Ahmed, a spokesperson at cybersecurity firm Check Point, said in a statement.

He said Okta customers should “exercise extreme vigilance and cyber safety practices.”

Matthew Prince, the CEO of Cloudflare, an internet infrastructure company whose details Lapsus$ included in one of its screenshots, said there was “no evidence” his company had been compromised.

“Thankfully, we have multiple layers of security beyond Okta, and would never consider them to be a standalone option,” he added.

Lapsus$ has claimed responsibility for a number of data breaches of high-profile companies in the last few months, including at Samsung and chip giant Nvidia.



Source

New NASA boss Isaacman says U.S. will return to the moon within Trump’s term
Technology

New NASA boss Isaacman says U.S. will return to the moon within Trump’s term

Recently appointed NASA Administrator Jared Isaacman on Friday told CNBC that the U.S. will return to the moon within President Donald Trump’s second term. Isaacman, a close ally of SpaceX CEO Elon Musk, told CNBC’s “Closing Bell Overtime” that Trump’s recommitment to exploring the moon is key to unlocking the “orbital economy.” “We want to […]

Read More
Nvidia’s Groq deal, S&P’s winning week, leather tariffs and more in Morning Squawk
Technology

Nvidia’s Groq deal, S&P’s winning week, leather tariffs and more in Morning Squawk

A trader works on the floor of the New York Stock Exchange. NYSE This is CNBC’s Morning Squawk newsletter. Subscribe here to receive future editions in your inbox. Here are five key things investors need to know to start the trading day: 1. Tiptoeing toward a winning week Stock futures are little changed after the Christmas holiday […]

Read More
Wall Street wrote off Palantir as too expensive. Retail investors can’t get enough
Technology

Wall Street wrote off Palantir as too expensive. Retail investors can’t get enough

Sopa Images | Lightrocket | Getty Images Kyle Dijamco is a proud member of Palantir Technologies‘ fast-growing retail investor base. The Los Angeles-based marketer has bet big on the defense tech stock, even increasing his exposure after a drawdown earlier this year. The 31-year-old’s position now stands at roughly $25,000. “It’s an exciting stock to […]

Read More