The Advanced Persistent Teenager: New Cybersecurity Threat?

Advanced Persistent Teenagers, Okta Bug Allowed Logins Without a Correct Password

In episode 354, we discuss the emergence of the term ‘Advanced Persistent Teenagers’ (APT) as a “new” cybersecurity threat. Recorded just before the election, the hosts humorously predict election outcomes while exploring ...
Demystifying Okta Attacks with Dorothy and Splunk

Demystifying Okta Attacks with Dorothy and Splunk

https://github.com/elastic/dorothyOverviewOkta is a leading identity and access management (IAM) platform designed to help organizations securely manage and streamline user authentication and authorization. It provides a comprehensive suite of services, including single sign-on ...
How to Correctly Use Client IP Addresses in Okta Audit Logs to Improve Identity Security 

How to Correctly Use Client IP Addresses in Okta Audit Logs to Improve Identity Security 

Being able to identify client IP addresses is essential for detecting and preventing identity-related threats. These IP addresses help establish a baseline of identity activities and highlight deviations often associated with threat ...
Okta ThreatInsight settings

Top 10 Features to Enhance Your Okta Security Posture 

We break down 10 key security configurations and features to ensure robust authentication and identity management within your Okta instance to help prevent future attacks. The post Top 10 Features to Enhance ...
Cybersecurity Insights with Contrast CISO David Lindner | 2/2/24

Cybersecurity Insights with Contrast CISO David Lindner | 2/2/24

Insight #1 Ransomware payments dropped to 29% in the last quarter of 2023. Will ransomware be a thing if victims stop paying completely? It seems we are getting closer to that reality ...

Microsoft Storm-1152 Crackdown: Stopping Threat Actors

In a significant stride against cybercrime, Microsoft has declared victory in dismantling cybercrime operations of Storm-1152. This group, a major player in the cybercrime-as-a-service (CaaS) ecosystem, was involved in selling access to ...
How Threat Actors Leveraged HAR Files to Attack Okta’s Customers

How Threat Actors Leveraged HAR Files to Attack Okta’s Customers

On October 19, 2023, Okta notified its customers of a security breach involving unauthorized access to their support system. This incident occurred when an external party obtained and misused Okta’s support service ...
2024 SaaS Security Forecast

2024 SaaS Security Forecast

Read the 2024 SSPM predictions from 5 cybersecurity thought leaders around disclosures, AI-provoked breaches, third-party attacks, and misconfigurations. The post 2024 SaaS Security Forecast appeared first on AppOmni ...
Okta Hacked Again, Quishing Is The New Phishing, Google Play Protect Real-Time Scanning

Okta Hacked Again, Quishing Is The New Phishing, Google Play Protect Real-Time Scanning

In this episode, we explore the recent Okta breach where hackers obtained sensitive customer data via unauthorized access to the Okta support system. Next, we discuss the emerging threat of “quishing,” a ...