cyber
confidence high
sentiment negative
materiality 0.65
Okta reports cyber breach via third-party vendor affecting 366 customers (2.5% of tenants)
Okta, Inc.
- Cybercrime group accessed third-party vendor's environment used for Okta customer support; 5-day window Jan 16-21, 2022.
- Up to 366 Okta tenants (2.5% of customers) were accessible; vendor's incident is remediated and not ongoing.
- Support engineers cannot create/delete users, download databases, or access source code; but can reset passwords and MFA factors.
- Okta's service remains fully operational; company does not consider incident material.
- Okta issued blog posts on March 22 and 23, 2022 with details; continues investigating and communicating with customers.