{"id":1989,"date":"2023-10-27T05:02:05","date_gmt":"2023-10-27T05:02:05","guid":{"rendered":"https:\/\/certera.com\/blog\/?p=1989"},"modified":"2023-10-27T05:07:37","modified_gmt":"2023-10-27T05:07:37","slug":"okta-breach-1password-is-the-latest-and-significant-victim","status":"publish","type":"post","link":"https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/","title":{"rendered":"Okta Breach: 1Password is the Latest and Significant Victim"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\"><strong><em>Yet again, threat actors focus on Okta&#8217;s IAM platform as they launch a supply chain attack that targets Okta customer support exchanges.<\/em><\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Cybercriminals are getting increasingly creative in their strategies as technology advances. There are ongoing challenges to even the most reliable digital password managers.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Popular password manager&nbsp;<strong>1Password<\/strong>, which over 100,000 organizations use, said yesterday that it had suffered a security breach because of a cyberattack on September 29, 2023. The issue was quickly fixed, and customers were reassured that their data was secure.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">An Okta Customer Service Breach Profile<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Considering the announcement of Okta&#8217;s recent breach, 1Password has now been made public as the second Victim. A series of cyberattacks have been launched to get highly privileged Okta accounts. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">It found that a threat actor had gained access to its customer support case management by using credentials that had been compromised. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Through recent customer support interactions, the attacker used its access to get access to a part of those thousands of consumers.<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p class=\"wp-block-paragraph\">&#8220;We noticed suspicious activity about their Support System event on our Okta instance. After careful examination, we found that no 1Password user data was accessed&#8221;<\/p>\n<cite>&#8211; <a href=\"https:\/\/blog.1password.com\/okta-incident\/\">The Organization stated in a Blog Post<\/a><\/cite><\/blockquote>\n\n\n\n<p class=\"wp-block-paragraph\">According to the Organization\u2019s statement, the password management provider experienced strange activity within the Okta instance it uses to manage its employee-facing apps. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Although it didn&#8217;t specify the extent of the malware&#8217;s penetration in employee apps, the activity was immediately ceased, and it was reported that no user or employee data or other vital systems had been compromised.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The organization then stated that, on October 2, an attacker attempted to enter BeyondTrust&#8217;s Okta administrator account by utilizing a legitimate session cookie taken from Okta&#8217;s support system.<\/p>\n\n\n\n<blockquote class=\"wp-block-quote quote-section is-layout-flow wp-block-quote-is-layout-flow\">\n<p class=\"wp-block-paragraph\">They requested a HAR [HTTP archive] file in an email, and within that HAR file was a session token, which the attacker had grabbed out of their support system within 30 minutes.&#8221; After authenticating with the session token, they attempted to carry out malicious actions.&#8221;<\/p>\n<cite>&#8211; <strong><em>James Maude, director of research at BeyondTrust recalls<\/em><\/strong><\/cite><\/blockquote>\n\n\n\n<p class=\"wp-block-paragraph\">Session tokens expire fast; therefore, the attacker&#8217;s swift pounce was both required and suspicious. &#8220;That was one of the things that made us wonder \u2014 that someone was just sitting, waiting for these files to be uploaded,&#8221; Maude adds.<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p class=\"wp-block-paragraph\">According to the logs, the attacker was using a VPN service to redirect his traffic from an IP address in Malaysia. Like 1Password three days earlier, BeyondTrust claims that the attack had been stopped before any infrastructure or client data was compromised.<\/p>\n<\/blockquote>\n\n\n\n<p class=\"wp-block-paragraph\">This malicious activity is the most recent attack on Okta, a platform that hackers frequently target due to its plethora of sensitive data. The organization outlined the effort, which involved convincing IT desk staff to reset multifactor authentication (MFA) for highly privileged Okta business accounts in August. This allowed for lateral movement.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Attackers can try to compromise Okta users by alternative means, even if they don&#8217;t include a support site.<strong><em> In a nutshell, Maude says, &#8220;Organisations need to step up their monitoring around Okta authentication events involving admin users.&#8221;<\/em><\/strong><\/p>\n\n\n\n<h2 class=\"wp-block-heading\">1Password undertakes a Great Deal of Security Measures<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">1Password claims that in the wake of the incident, it has strengthened its security measures proactively by reducing the number of &#8220;<strong>super admin<\/strong>&#8221; users and enforcing more intense login procedures for administrators.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The fact that this incident was prevented shows that even security measures that appear unbreakable can be compromised by malicious individuals, which is frightening for 1Password users.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Malicious attacks have already been launched at secure password managers. Similar instances have been involving password managers, including <strong>LastPass in 2022<\/strong>, <strong>Dashlane, Keeper, and Roboform in 2020<\/strong>, and <strong>OneLogin in 2017<\/strong>. <br><br>These risks will surely come with a high price tag. According to Cybersecurity Ventures, the estimated cost of losses brought on by cyberattacks is <strong><em>expected to exceed $6 trillion in 2023<\/em><\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Users are urged to use complex usernames and passwords, turn on two-factor authentication to reduce potential hazards, and consider using authentication keys in cybersecurity issues.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">How to Keep Your 1Password Account Protected?<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">A strong account password is your first line of protection for your 1Password account. It&#8217;s used to secure your login credentials, encrypt your data, and ensure that only you can access the information you&#8217;ve entered 1Password.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Create a Strong Password for your Account:<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">When you set up your 1Password account, 1Password will recommend a strong password. If you decide to make your own, go for one that is challenging to figure out yet simple to remember.&nbsp;<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Keep your Password Secure:<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Your account password should be confidential data only. A family organizer or team administrator can assist in restoring your access to your 1Password account if you ever lose it, and 1Password Support will never ask for your password.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Awareness is Crucial in Organizations:<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Companies should be aware of how delicate it is to provide information, even with trustworthy client service members, and take preventive measures to protect their most important accounts in case something goes wrong<strong>.<\/strong><\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Utilize your Secure Account Password only for 1Password:<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">An attacker may use your password to access your 1Password account if you use it on another website with a security breach. Ensure that no one else is using your account password.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Back up your Details:<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">This provision will give you a standby in the rare circumstance that you forget your account password. This act is beneficial if you are the only person who cannot assist you in retrieving your account.<\/p>\n\n\n\n<blockquote class=\"wp-block-quote quote-section is-layout-flow wp-block-quote-is-layout-flow\">\n<p class=\"wp-block-paragraph\">Protect your business, website and data from data breach, cyber attacks and vulnerabilities with Cyber Security &amp; Consulting Services!<\/p>\n<cite>&#8211; <a href=\"https:\/\/certera.com\/services\/consulting-services\">Talk to Cyber Security Expert<\/a><\/cite><\/blockquote>\n","protected":false},"excerpt":{"rendered":"<p>Yet again, threat actors focus on Okta&#8217;s IAM platform as they launch a supply chain attack that targets Okta customer support exchanges. Cybercriminals are getting increasingly creative in their strategies as technology advances. There are ongoing challenges to even the most reliable digital password managers. Popular password manager&nbsp;1Password, which over 100,000 organizations use, said yesterday<span class=\"morelink d-block mt-3\"><a href=\"https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/\">Read More<\/a><\/span><\/p>\n","protected":false},"author":1,"featured_media":1990,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[48],"tags":[367,366,368,365,364],"class_list":["post-1989","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-data-breach","tag-1password-and-okta-hack","tag-1password-was-affected-by-oktas-breach","tag-okta-customer-service-breach","tag-okta-customer-support-breach","tag-oktas-latest-hack","entry"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v24.6 (Yoast SEO v27.3) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>1Password is the Latest Victim of an Okta Customer Support Breach<\/title>\n<meta name=\"description\" content=\"1Password was affected by Okta\u2019s breach. Hackers used a session token from a file that had been uploaded by a member of the IT team earlier in the day to Okta\u2019s support unit.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Okta Breach: 1Password is the Latest and Significant Victim\" \/>\n<meta property=\"og:description\" content=\"1Password was affected by Okta\u2019s breach. Hackers used a session token from a file that had been uploaded by a member of the IT team earlier in the day to Okta\u2019s support unit.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/\" \/>\n<meta property=\"og:site_name\" content=\"EncryptedFence by Certera - Web &amp; Cyber Security Blog\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/certeraLLC\/\" \/>\n<meta property=\"article:published_time\" content=\"2023-10-27T05:02:05+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2023-10-27T05:07:37+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/certera.com\/blog\/wp-content\/uploads\/2023\/10\/1password-hacked-by-okta-customer-support-breach-jpg.webp\" \/>\n\t<meta property=\"og:image:width\" content=\"960\" \/>\n\t<meta property=\"og:image:height\" content=\"620\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Janki Mehta\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:image\" content=\"https:\/\/certera.com\/blog\/wp-content\/uploads\/2023\/10\/1password-hacked-by-okta-customer-support-breach-jpg.webp\" \/>\n<meta name=\"twitter:creator\" content=\"@certera_llc\" \/>\n<meta name=\"twitter:site\" content=\"@certera_llc\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Janki Mehta\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/okta-breach-1password-is-the-latest-and-significant-victim\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/okta-breach-1password-is-the-latest-and-significant-victim\\\/\"},\"author\":{\"name\":\"Janki Mehta\",\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/#\\\/schema\\\/person\\\/e5a476aa90d9e02260ebfe4b0bf046b7\"},\"headline\":\"Okta Breach: 1Password is the Latest and Significant Victim\",\"datePublished\":\"2023-10-27T05:02:05+00:00\",\"dateModified\":\"2023-10-27T05:07:37+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/okta-breach-1password-is-the-latest-and-significant-victim\\\/\"},\"wordCount\":939,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/okta-breach-1password-is-the-latest-and-significant-victim\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/certera.com\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/10\\\/1password-hacked-by-okta-customer-support-breach-jpg.webp\",\"keywords\":[\"1password and okta hack\",\"1Password was affected by Okta\u2019s breach\",\"Okta Customer Service Breach\",\"Okta customer support breach\",\"Okta\u2019s latest hack\"],\"articleSection\":[\"Data Breach\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/certera.com\\\/blog\\\/okta-breach-1password-is-the-latest-and-significant-victim\\\/#respond\"]}],\"copyrightYear\":\"2023\",\"copyrightHolder\":{\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/#organization\"}},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/okta-breach-1password-is-the-latest-and-significant-victim\\\/\",\"url\":\"https:\\\/\\\/certera.com\\\/blog\\\/okta-breach-1password-is-the-latest-and-significant-victim\\\/\",\"name\":\"1Password is the Latest Victim of an Okta Customer Support Breach\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/okta-breach-1password-is-the-latest-and-significant-victim\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/okta-breach-1password-is-the-latest-and-significant-victim\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/certera.com\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/10\\\/1password-hacked-by-okta-customer-support-breach-jpg.webp\",\"datePublished\":\"2023-10-27T05:02:05+00:00\",\"dateModified\":\"2023-10-27T05:07:37+00:00\",\"description\":\"1Password was affected by Okta\u2019s breach. Hackers used a session token from a file that had been uploaded by a member of the IT team earlier in the day to Okta\u2019s support unit.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/okta-breach-1password-is-the-latest-and-significant-victim\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/certera.com\\\/blog\\\/okta-breach-1password-is-the-latest-and-significant-victim\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/okta-breach-1password-is-the-latest-and-significant-victim\\\/#primaryimage\",\"url\":\"https:\\\/\\\/certera.com\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/10\\\/1password-hacked-by-okta-customer-support-breach-jpg.webp\",\"contentUrl\":\"https:\\\/\\\/certera.com\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/10\\\/1password-hacked-by-okta-customer-support-breach-jpg.webp\",\"width\":960,\"height\":620,\"caption\":\"1Password Hacked by Okta Breach\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/okta-breach-1password-is-the-latest-and-significant-victim\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/certera.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Okta Breach: 1Password is the Latest and Significant Victim\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/certera.com\\\/blog\\\/\",\"name\":\"EncryptedFence by Certera - Web & Cyber Security Blog\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/#organization\"},\"alternateName\":\"Certera's EncryptedFence Blog\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/certera.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/#organization\",\"name\":\"Certera\",\"url\":\"https:\\\/\\\/certera.com\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/certera.com\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/08\\\/logo-encryptedfence.svg\",\"contentUrl\":\"https:\\\/\\\/certera.com\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/08\\\/logo-encryptedfence.svg\",\"caption\":\"Certera\"},\"image\":{\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/certeraLLC\\\/\",\"https:\\\/\\\/x.com\\\/certera_llc\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/certera-llc\\\/\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/certera.com\\\/blog\\\/#\\\/schema\\\/person\\\/e5a476aa90d9e02260ebfe4b0bf046b7\",\"name\":\"Janki Mehta\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/1fba817ef81065f1393461fc3a0d85c40f2cc826919819ea4df4b12d76566e62?s=96&d=https%3A%2F%2Fcertera.com%2Fblog%2Fwp-content%2Fuploads%2F2023%2F02%2Fhttps-vs-sftp-jpg.webp&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/1fba817ef81065f1393461fc3a0d85c40f2cc826919819ea4df4b12d76566e62?s=96&d=https%3A%2F%2Fcertera.com%2Fblog%2Fwp-content%2Fuploads%2F2023%2F02%2Fhttps-vs-sftp-jpg.webp&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/1fba817ef81065f1393461fc3a0d85c40f2cc826919819ea4df4b12d76566e62?s=96&d=https%3A%2F%2Fcertera.com%2Fblog%2Fwp-content%2Fuploads%2F2023%2F02%2Fhttps-vs-sftp-jpg.webp&r=g\",\"caption\":\"Janki Mehta\"},\"description\":\"Janki Mehta is a passionate Cyber-Security Enthusiast who keenly monitors the latest developments in the Web\\\/Cyber Security industry. She puts her knowledge into practice and helps web users by arming them with the necessary security measures to stay safe in the digital world.\",\"sameAs\":[\"https:\\\/\\\/certerassl.com\\\/\"],\"url\":\"https:\\\/\\\/certera.com\\\/blog\\\/author\\\/certerabguser\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"1Password is the Latest Victim of an Okta Customer Support Breach","description":"1Password was affected by Okta\u2019s breach. Hackers used a session token from a file that had been uploaded by a member of the IT team earlier in the day to Okta\u2019s support unit.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/","og_locale":"en_US","og_type":"article","og_title":"Okta Breach: 1Password is the Latest and Significant Victim","og_description":"1Password was affected by Okta\u2019s breach. Hackers used a session token from a file that had been uploaded by a member of the IT team earlier in the day to Okta\u2019s support unit.","og_url":"https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/","og_site_name":"EncryptedFence by Certera - Web &amp; Cyber Security Blog","article_publisher":"https:\/\/www.facebook.com\/certeraLLC\/","article_published_time":"2023-10-27T05:02:05+00:00","article_modified_time":"2023-10-27T05:07:37+00:00","og_image":[{"width":960,"height":620,"url":"https:\/\/certera.com\/blog\/wp-content\/uploads\/2023\/10\/1password-hacked-by-okta-customer-support-breach-jpg.webp","type":"image\/jpeg"}],"author":"Janki Mehta","twitter_card":"summary_large_image","twitter_image":"https:\/\/certera.com\/blog\/wp-content\/uploads\/2023\/10\/1password-hacked-by-okta-customer-support-breach-jpg.webp","twitter_creator":"@certera_llc","twitter_site":"@certera_llc","twitter_misc":{"Written by":"Janki Mehta","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/#article","isPartOf":{"@id":"https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/"},"author":{"name":"Janki Mehta","@id":"https:\/\/certera.com\/blog\/#\/schema\/person\/e5a476aa90d9e02260ebfe4b0bf046b7"},"headline":"Okta Breach: 1Password is the Latest and Significant Victim","datePublished":"2023-10-27T05:02:05+00:00","dateModified":"2023-10-27T05:07:37+00:00","mainEntityOfPage":{"@id":"https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/"},"wordCount":939,"commentCount":0,"publisher":{"@id":"https:\/\/certera.com\/blog\/#organization"},"image":{"@id":"https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/#primaryimage"},"thumbnailUrl":"https:\/\/certera.com\/blog\/wp-content\/uploads\/2023\/10\/1password-hacked-by-okta-customer-support-breach-jpg.webp","keywords":["1password and okta hack","1Password was affected by Okta\u2019s breach","Okta Customer Service Breach","Okta customer support breach","Okta\u2019s latest hack"],"articleSection":["Data Breach"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/#respond"]}],"copyrightYear":"2023","copyrightHolder":{"@id":"https:\/\/certera.com\/blog\/#organization"}},{"@type":"WebPage","@id":"https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/","url":"https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/","name":"1Password is the Latest Victim of an Okta Customer Support Breach","isPartOf":{"@id":"https:\/\/certera.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/#primaryimage"},"image":{"@id":"https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/#primaryimage"},"thumbnailUrl":"https:\/\/certera.com\/blog\/wp-content\/uploads\/2023\/10\/1password-hacked-by-okta-customer-support-breach-jpg.webp","datePublished":"2023-10-27T05:02:05+00:00","dateModified":"2023-10-27T05:07:37+00:00","description":"1Password was affected by Okta\u2019s breach. Hackers used a session token from a file that had been uploaded by a member of the IT team earlier in the day to Okta\u2019s support unit.","breadcrumb":{"@id":"https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/#primaryimage","url":"https:\/\/certera.com\/blog\/wp-content\/uploads\/2023\/10\/1password-hacked-by-okta-customer-support-breach-jpg.webp","contentUrl":"https:\/\/certera.com\/blog\/wp-content\/uploads\/2023\/10\/1password-hacked-by-okta-customer-support-breach-jpg.webp","width":960,"height":620,"caption":"1Password Hacked by Okta Breach"},{"@type":"BreadcrumbList","@id":"https:\/\/certera.com\/blog\/okta-breach-1password-is-the-latest-and-significant-victim\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/certera.com\/blog\/"},{"@type":"ListItem","position":2,"name":"Okta Breach: 1Password is the Latest and Significant Victim"}]},{"@type":"WebSite","@id":"https:\/\/certera.com\/blog\/#website","url":"https:\/\/certera.com\/blog\/","name":"EncryptedFence by Certera - Web & Cyber Security Blog","description":"","publisher":{"@id":"https:\/\/certera.com\/blog\/#organization"},"alternateName":"Certera's EncryptedFence Blog","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/certera.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/certera.com\/blog\/#organization","name":"Certera","url":"https:\/\/certera.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/certera.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/certera.com\/blog\/wp-content\/uploads\/2023\/08\/logo-encryptedfence.svg","contentUrl":"https:\/\/certera.com\/blog\/wp-content\/uploads\/2023\/08\/logo-encryptedfence.svg","caption":"Certera"},"image":{"@id":"https:\/\/certera.com\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/certeraLLC\/","https:\/\/x.com\/certera_llc","https:\/\/www.linkedin.com\/company\/certera-llc\/"]},{"@type":"Person","@id":"https:\/\/certera.com\/blog\/#\/schema\/person\/e5a476aa90d9e02260ebfe4b0bf046b7","name":"Janki Mehta","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/1fba817ef81065f1393461fc3a0d85c40f2cc826919819ea4df4b12d76566e62?s=96&d=https%3A%2F%2Fcertera.com%2Fblog%2Fwp-content%2Fuploads%2F2023%2F02%2Fhttps-vs-sftp-jpg.webp&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/1fba817ef81065f1393461fc3a0d85c40f2cc826919819ea4df4b12d76566e62?s=96&d=https%3A%2F%2Fcertera.com%2Fblog%2Fwp-content%2Fuploads%2F2023%2F02%2Fhttps-vs-sftp-jpg.webp&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/1fba817ef81065f1393461fc3a0d85c40f2cc826919819ea4df4b12d76566e62?s=96&d=https%3A%2F%2Fcertera.com%2Fblog%2Fwp-content%2Fuploads%2F2023%2F02%2Fhttps-vs-sftp-jpg.webp&r=g","caption":"Janki Mehta"},"description":"Janki Mehta is a passionate Cyber-Security Enthusiast who keenly monitors the latest developments in the Web\/Cyber Security industry. She puts her knowledge into practice and helps web users by arming them with the necessary security measures to stay safe in the digital world.","sameAs":["https:\/\/certerassl.com\/"],"url":"https:\/\/certera.com\/blog\/author\/certerabguser\/"}]}},"_links":{"self":[{"href":"https:\/\/certera.com\/blog\/wp-json\/wp\/v2\/posts\/1989","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/certera.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/certera.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/certera.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/certera.com\/blog\/wp-json\/wp\/v2\/comments?post=1989"}],"version-history":[{"count":3,"href":"https:\/\/certera.com\/blog\/wp-json\/wp\/v2\/posts\/1989\/revisions"}],"predecessor-version":[{"id":1994,"href":"https:\/\/certera.com\/blog\/wp-json\/wp\/v2\/posts\/1989\/revisions\/1994"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/certera.com\/blog\/wp-json\/wp\/v2\/media\/1990"}],"wp:attachment":[{"href":"https:\/\/certera.com\/blog\/wp-json\/wp\/v2\/media?parent=1989"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/certera.com\/blog\/wp-json\/wp\/v2\/categories?post=1989"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/certera.com\/blog\/wp-json\/wp\/v2\/tags?post=1989"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}