1Password detects “suspicious activity” in its internal Okta account

Discussion in 'other security issues & news' started by LoneWolf, Oct 24, 2023.

  1. LoneWolf

    LoneWolf Registered Member

    Joined:
    Jan 2, 2006
    Posts:
    3,819
    "1Password, a password manager used by millions of people and more than 100,000 businesses, said it detected suspicious activity on a company account provided by Okta, the identity and authentication service that disclosed a breach on Friday."

    “On September 29, we detected suspicious activity on our Okta instance that we use to manage our employee-facing apps,” 1Password CTO Pedro Canahuati wrote in an email. “We immediately terminated the activity, investigated, and found no compromise of user data or other sensitive systems, either employee-facing or user-facing.”

    https://arstechnica.com/security/20...icious-activity-in-its-internal-okta-account/
     
  2. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    18,178
    Location:
    The Netherlands
    Yes, it sounds a lot like what happened to LastPass. Bottom line is that you should never blindly rely on cloud based password managers, because they rely on companies like Twilio and Okta to secure them, which in turn apparently rely on inferior MFA technology. So occasionally they get hacked themselves, what a joke!
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.