Supply chain β›“ Supply Chain

1Password Third-Party Breach (November 2023)

πŸ“… 2023-11-01 🏒 Okta
Primary Source β†—

Incident Details

Okta breach: 134 customers exposed in October support system hack. Okta says attackers who breached its customer support system last month gained access to files belonging to 134 customers, five of them later being targeted in session hijacking attacks with the help of stolen session tokens. “From September 28, 2023 to October 17, 2023, a threat actor gained unauthorized access to files inside Okta’s customer support system associated with 134 Okta customers, or less than 1% of Okta customers,” Okta revealed. “Some of these files were HAR files that contained session tokens which could in turn be used for session hijacking attacks. The threat actor was able to use these session tokens to hijack the legitimate Okta sessions of 5 customers, 3 of whom have shared their own response to this event.”. Third-party company: Okta.

Technical Details

Initial Attack Vector
Compromise of third-party service provider / vendor relationship
Vendor / Product
Okta
Supply Chain Attack
βœ… Confirmed third-party / vendor compromise

Timeline

  1. 2023-11-01 Breach occurred
  2. 2023-11-03 Publicly disclosed