TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Okta admits hackers accessed data on all customers during recent breach

63 pointsby throwaw12over 1 year ago

4 comments

pier25over 1 year ago
Auth companies are high value targets for hackers. You'd think outsourcing auth is a smart idea because it's difficult to get auth right but otoh you might never have been a target if you hadn't used Okta.
评论 #38460527 未加载
评论 #38460506 未加载
aquaphileover 1 year ago
Remember RSA and OPM? The RSA hack had huge implications for the Department of Defense, and was probably a state-sponsored hack (likely China). Around the same time the Office of Personnel Management (OPM) was hacked. So the state-sponsored hackers got to all the private details of anyone with classified access and clearances (which can be used for blackmail or for answering those strange &quot;Who was your 3rd grade teacher?&quot; auth questions to get past an identity test), and simultaneously could hack the rotating MFA codes from RSA.<p>Auth companies will always be a high value target for state-sponsored espionage.
toomuchtodoover 1 year ago
Dupe: <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=38454908">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=38454908</a>
评论 #38462869 未加载
gumballindieover 1 year ago
As a rule of thumb, if you value the privacy or security of your users, never ever use services such as Okta. Product that rely on them are guaranteed to suffer from breaches. Told my clients that and i was right. It is a matter if time until the next breach.
评论 #38460047 未加载