Remember the Okta breach a few months ago, where they explained it only impacted 1% of customers?
Turns it out is 100% of customers. They also stole data about Okta's staff, but they apparently didn't tell themselves either.
Cloudflare hacked using auth tokens stolen in Okta attack https://www.bleepingcomputer.com/news/security/cloudflare-hacked-using-auth-tokens-stolen-in-okta-attack/
@GossiTheDog wait, aren't they publicly traded? Gotta look into who dumped their stocks during that news delay
@GossiTheDog Corporations gonna corporate. Anyhow, at least the security side of Okta that does multifactor authentication hasn't been breached.....yet.
@GossiTheDog@cyberplace.social if a server gets hacked always assume 100% of their data is stolen even if it isn't.
@GossiTheDog It’s real poopoo when you can’t even trust their customer support
@GossiTheDog yall give biometrics to your corporate overlords? Let's not do that, though.
@GossiTheDog
So the hackers stole those zeroes too...
@GossiTheDog How long do these tokens last?
@GossiTheDog I wonder how many nation States have access just by asking "nicely".
I am not willing to assume that the five eyes just missed the re-centralization of the internet. Heck, are we at all confident they didn't fund it?
@GossiTheDog Cloudflare's Atlassian Bitbucket source code management system was accessed.
Perhaps we'll see a foreign clone of Cloudflare on the market soon. Perhaps they'll find previously unidentified security flaws in Cloudflare.
The future is a dangerous place.
@GossiTheDog @adrianco What’s a couple of orders of magnitude between breach-buddies?
@GossiTheDog
I mean... It's just a rounding error in the reporting, right? Right...?