Supply chain
β Supply Chain
1Password Third-Party Breach (November 2023)
Primary Source βIncident Details
Okta breach: 134 customers exposed in October support system hack. Okta says attackers who breached its customer support system last month gained access to files belonging to 134 customers, five of them later being targeted in session hijacking attacks with the help of stolen session tokens. “From September 28, 2023 to October 17, 2023, a threat actor gained unauthorized access to files inside Okta’s customer support system associated with 134 Okta customers, or less than 1% of Okta customers,” Okta revealed. “Some of these files were HAR files that contained session tokens which could in turn be used for session hijacking attacks. The threat actor was able to use these session tokens to hijack the legitimate Okta sessions of 5 customers, 3 of whom have shared their own response to this event.”. Third-party company: Okta.
Technical Details
- Initial Attack Vector
- Compromise of third-party service provider / vendor relationship
- Vendor / Product
- Okta
- Supply Chain Attack
- β Confirmed third-party / vendor compromise
Timeline
- 2023-11-01 Breach occurred
- 2023-11-03 Publicly disclosed