Okta denies it was hacked again after data appears on hacking site
A hacker has shared a new database on an underground forum, claiming it contained data stolen from Okta – however the company begs to differ.
In late October 2023, cybercriminals broke into Okta systems and stole client session cookies, potentially giving them access to those companies’ networks, and opening the doors to malware and ransomware attacks. Subsequent investigation showed that all of Okta’s customers were affected.
Now, almost half a year later, a hacker with the alias “Ddarknotevil” posted a new database on a dark web forum, claiming it contained data on 3,800 Okta customers, BleepingComputer reported.
Another Okta breach? Apparently not…
“Today, I have uploaded the Okta database for you all, This Breach is being shared in behife @IntelBroker – [Cyber <redacted>] thanks for reading and enjoy!,” the thread said. “In September 2023, Okta, an IT service management company, suffered a data breach that led to the exposure of 3.8 thousand customer support users.”
The database contains user IDs, full names, company names, office addresses, phone numbers, email addresses, positions/roles, and other information.
However, being asked about the database, Okta told the publication that the data didn’t belong to it, and that it was probably simply scraped from the internet.
“This is not Okta’s data, and it is not associated with the October 2023 security incident,” an Okta spokesperson told BleepingComputer. “We cannot determine the source of this data or its accuracy, but we noted that some fields have dates from over ten years ago. We suspect that this information may be aggregated from public information sources on the Internet.”
The publication also found that cybersecurity firm KELA analyzed the data and concluded that it belonged to the National Defense Information Sharing and Analysis Center. It was apparently stolen in July last year, and published by a known leaker IntelBroker.
More from TechRadar Pro
A hacker has shared a new database on an underground forum, claiming it contained data stolen from Okta – however the company begs to differ. In late October 2023, cybercriminals broke into Okta systems and stole client session cookies, potentially giving them access to those companies’ networks, and opening the…
Recent Posts
- Buying your dad a tech gift or gadget for Father’s Day? You may want to wait until Prime Day, if possible
- Which Amazon Fire Stick do I need? A simple guide to the key differences
- Stellar Blade’s slick-looking sequel is officially called Blood Rain
- How much data does your favorite messaging app collect? New study shows 90% of messaging apps now include AI that puts privacy at risk
- Super Yooka-Laylee Kart looks like an old-school Mario Kart for the modern age
Archives
- June 2026
- May 2026
- April 2026
- March 2026
- February 2026
- January 2026
- December 2025
- November 2025
- October 2025
- September 2025
- August 2025
- July 2025
- June 2025
- May 2025
- April 2025
- March 2025
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023