Search

Find merged stories by title or summary.

Breaches & Ransomware
Emerging1 src

Lapsus$ Explained | The Hacking Group Behind Okta, Uber, Nvidia and Its Return

Lapsus$ is a hacking and extortion group first known for breaching Okta, Microsoft, Nvidia, Samsung, and Uber in 2021 and 2022 using social engineering rather than malware, and it has since reemerged as part of a larger collective called Scattered Lapsus$ Hunters. Unlike ransomware gangs that rely on encryption, Lapsus$ built its reputation on stealing source code and internal data, then threatening to leak it publicly unless the victim paid or complied with its demands. This tactic made it one of the most disruptive threat actors of the past few years despite reportedly being run largely by teenagers. That threat hasn’t gone away; it’s evolved.

·Malware.news
Read →
AI Security
Emerging1 src

Okta bets on identity to control AI agents, but is identity enough?

Concerns over agentic risks are rising, and identity and access management (IAM) giant Okta believes it’s making the moves of a would-be leader in this emerging cyber market. “Identity is the primary control plane for securing AI,” said Okta CEO and co-founder Todd McKinnon in an earnings call in late August , telling investment analysts that the company’s customers see Okta as well-positioned to secure this agentic future. “And so we’re going after that on all fronts.” “We think that being the system of record for agents in the enterprise and being the system of record for agent identity, in the fullness of time, could be the biggest category of cyber,” he added. At the center of that strategy is Okta for AI Agents, an identity management and security platform for tracking and controlling agentic entities and activity.

·CSO Online
Read →
AI Security
Emerging1 src

Okta debuts agentic lifecycle management tools, AI kill switch

In the wake of a string of incidents involving badly managed AI agents, security firm Okta enhanced its year-old agentic services proposition with capabilities to securely manage agentic lifecycles

·ComputerWeekly Security
Read →
AI Security
Emerging2 srcs

Aembit Launches Support for Okta Cross App Access, Extending Enterprise Identity Controls to AI Agents - Hackread

Silver Spring, Maryland, USA, September 22nd, 2026, CyberNewswire Aembit , the identity and access management (IAM) company for AI agents, today announced support for Cross App Access (XAA), an open protocol introduced by Okta that lets a user’s existing enterprise identity authorize access to downstream applications without a separate consent step for each connection. Launching this week as an Okta partner for XAA at Oktane 2026 in Las Vegas, Aembit is making that authorization approach available through Aembit IAM for Agentic AI, which provides verified agent identity, policy-based access enforcement, and auditability. As agents take on more work across collaboration, project management, development, and data platforms, the number of access relationships enterprises need to govern can grow quickly.

·Hackread
Read →
Vendors & Market
Emerging1 src

8 Leading Authentication-as-a-Service (AaaS) Providers to Consider in 2026

Quick Answer: AaaS buying is stage-driven. Prototypes and Firebase-stack apps use Firebase Auth (free at startling scale); React/Next. js products ship fastest with Clerk’s components; fraud-exposed consumer apps choose Stytch; the enterprise-proof default remains Auth0 (Okta’s developer line); sovereignty and cost control at scale favor open-source Ory; Microsoft-committed teams use Entra External ID; web3-flavored logins use Magic; orchestrated enterprise journeys go to Ping. Passkeys are now the baseline expectation in every lane. Who This Guide Is For Founders deciding whether to build or buy login, engineering leads graduating from a framework’s built-in auth, and architects sizing per-MAU economics at scale.

·CyberPress
Read →
Phishing
Emerging1 src

8 Best IAM Solutions for Every Business Size (2026)

Quick Answer: Identity should grow with the org chart: startups get IAM as a byproduct of Rippling -style HR-IT platforms or free Keycloak engineering; growth companies anchor on Entra ID or Okta as the app estate demands lifecycle automation; complex and regulated stages bring Ping , CyberArk (security-first), and Oracle (app-estate-driven), with miniOrange solving budget and odd-connector corners throughout. The IAM decision isn’t really about vendors it’s about which stage of organizational chaos you’re in. At ten employees, identity is whoever runs the HR system; at two hundred, it’s lifecycle automation or onboarding drowns; at two thousand, it’s orchestration, privilege, and audit. This scorecard maps eight IAM options to those stages including the unconventional entries (an HR platform, an open-source server) that legacy vendor lists skip but real startups actually use.

·CyberPress
Read →
Vulnerabilities & Patches
Emerging1 src

Critical Auth0 AD/LDAP Connector Flaw Lets Attackers Execute Stored XSS in Admin Browsers

Okta has released security updates for three high-severity vulnerabilities affecting the Auth0 AD/LDAP Connector and Okta Access Gateway, including a critical stored cross-site scripting flaw that could execute attacker-controlled code in an administrator’s browser. The vulnerabilities, disclosed on September 8, 2026, include stored XSS, authorization bypass, and SQL injection issues. Organizations using the affected identity infrastructure should prioritize remediation, especially where Access Gateway secures sensitive enterprise applications or privileged IT personnel administer Auth0 directory connectors. Critical Auth0 AD/LDAP Connector Flaw The most severe vulnerability, CVE-2026-85982 , impacts the Auth0 AD/LDAP Connector and carries a CVSS v3 score of 9. 0.

·CyberPress
Read →
DFIR
Emerging1 src

InfoSec News Nuggets – 09/01/2026

McKesson Discloses Breach After ShinyHunters Claims Patient Data Theft Healthcare and pharmaceutical distribution giant McKesson has confirmed a cybersecurity incident involving unauthorized access to third-party applications after the ShinyHunters extortion group claimed it stole roughly 284 million patient-related data records. McKesson says it discovered the intrusion on August 25 and that its investigation is still in its early stages, while the attackers claim they used vishing calls against employees to compromise Okta single sign-on accounts and pivot into Salesforce and Snowflake environments, demanding over $55 million after McKesson allegedly failed to respond.

·AboutDFIR
Read →
Vulnerabilities & Patches
Emerging1 src

The Collective Cyber Defense letter wrote your next vendor questionnaire

Last week, more than 100 companies and organizations published an open letter calling for a rapid acceleration of cyber defense capabilities to combat the capabilities of AI. The list reads like a procurement catalog. Microsoft, Google, AWS, Cisco, IBM, CrowdStrike, Cloudflare, Anthropic, Okta and Fortinet are on it, alongside buyers like Mastercard, Visa and Capital One. The public signatory page has since passed 200 companies and organizations, with some such as 1Password, Sophos and Prophet Security, have already published posts of their own detailing their commitment to defenders. The explanations are worth sitting with. Letters turn into marketing assets faster than they become company concrete action. The buyers decide which one becomes reality. The diagnosis is correct I want to be careful about how the skepticism below reads, because the letter has the substance right.

·CyberScoop
Read →
Vendors & Market
Emerging1 src

Okta Moves Passkeys to Cloud, Allows Multi-Device Authentication - TechRepublic

Okta Moves Passkeys to Cloud, Allows Multi-Device Authentication TechRepublic

·TechRepublic Cybersecurity
Read →
AI Security
Emerging1 src

Okta Shares Surge on Strong Earnings, Growing Demand for AI Identity Security

The identity security company beat quarterly expectations and raised its outlook as enterprises face growing pressure to secure AI agents and other non-human identities. The post Okta Shares Surge on Strong Earnings, Growing Demand for AI Identity Security appeared first on SecurityWeek .

·SecurityWeek
Read →
Vulnerabilities & Patches
Emerging1 src

CVE-2026-77585 - Improper Validation of SSH Target in Okta Privileged Access Client

CVE ID : CVE-2026-77585 Published : Aug. 25, 2026, 8:17 p. m. • 55 minutes ago Description : The Okta Privileged Access client does not reject a leading hyphen in the username portion of an SSH target. As a result, the value may be interpreted as a command-line option by the underlying SSH process. Severity: 5.3 • MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

·CVEFeed
Read →
Breaches & Ransomware
Emerging1 src

ReliaQuest allegedly breached as ShinyHunters posts Okta dashboard - Cybernews

ReliaQuest allegedly breached as ShinyHunters posts Okta dashboard Cybernews

·Cybernews
Read →
Vendors & Market
Emerging1 src

Cybersecurity M&A Roundup: 21 Deals Announced in July 2026

Significant cybersecurity M&A deals announced by Barracuda, CrowdStrike, Cyera, Okta, Palo Alto Networks, and Qualcomm. The post Cybersecurity M&A Roundup: 21 Deals Announced in July 2026 appeared first on SecurityWeek .

·SecurityWeek
Read →
Vendors & Market
Emerging1 src

Horizon3 raises $250 million in Series E funding.

Spur secures $200 million in funding from Insight Partners. Okta has agreed to acquire identity security platform Permiso Security.

·The CyberWire
Read →
Vendors & Market
Emerging1 src

Researchers report unauthorized AI behavior in cybersecurity exercises.

Apple files new legal challenge against UK’s iCloud access mandate. Business news: Okta to acquire Permiso Security.

·The CyberWire
Read →
Phishing
Emerging1 src

Welcome to BlackFile: Inside a Vishing Extortion Operation

Written by: Austin Larsen, Tyler McLellan, Genevieve Stark, Dan Ebreo Introduction Google Threat Intelligence Group (GTIG) has continued to track an expansive extortion campaign by UNC6671, a threat actor operating under the "BlackFile" brand, that targets organizations via sophisticated voice phishing (vishing) and single sign-on (SSO) compromise. By leveraging adversary-in-the-middle (AiTM) techniques to bypass traditional perimeter defenses and multi-factor authentication (MFA), UNC6671 gains deep access to cloud environments. The group primarily targets Microsoft 365 and Okta infrastructure, leveraging Python and PowerShell scripts to programmatically exfiltrate sensitive corporate data for subsequent extortion attempts. This post details UNC6671’s attack lifecycle and provides defenders with actionable guidance to detect and mitigate these identity-centric threats.

·Mandiant / Google TI
Read →
Breaches & Ransomware
Emerging1 src

A Halloween Story: 10 Cyber Ghouls We Eyeballed In Q3 2024

In the third quarter of 2024, ransomware remained one of the most impactful threats to all sectors. Defenders were faced with a record number of vulnerabilities as nation-state actors, money lusting cybercriminals, and hacktivists with an ax to grind continued to make their marks on the digital threat landscape. Here are the spooktacular cyber threat intelligence (CTI) statistics.

·Intel 471
Read →

You've reached the end of current stories for this search.