Tag: okta
6 articles

Public Sector Braces for Identity-Based Attacks
In today's digital landscape, your identity is the key that unlocks access to all your applications and services - making it the new perimeter that public sector organizations must fiercely protect. When identity infrastructure is compromised, attackers can gain a foothold for long-term persistence and privilege escalation, putting entire operations at risk.

ReliaQuest Exposes ShinyHunters' Social Engineering Tactics
ReliaQuest sets the record straight: claims of a ransomware attack or breach are completely false. The company recently thwarted a social engineering scheme by ShinyHunters, swiftly investigating and publicly rebutting the misinformation.

Okta Bolsters Identity Security with Permiso Acquisition
Okta is taking identity security to the next level with its acquisition of Permiso Security, bringing together cutting-edge threat detection and response capabilities with its existing identity stack to provide unparalleled protection. This game-changing move will enable Okta to spot and respond to risks that emerge after users, machines, or AI-driven agents have authenticated.

Phishing Campaign Targets Microsoft 365 Users with Voice-Based Entra Passkey Scam
Beware of scammers impersonating Microsoft 365, tricking users into enrolling a fake Entra passkey by mimicking the real enrollment portal and leveraging voice calls to urge action. This sneaky phishing campaign has been targeting multiple sectors since April, putting unsuspecting users at risk.

Executives' Blind Spot: Shadow AI Use Exposes Security Risks
Most organizations have a blind spot when it comes to AI usage, leaving them vulnerable to security risks - and the truth is, you can't protect what you can't see. A recent study by Okta and Apprize360 found that shadow AI use is rampant, exposing companies to potential breaches, data exposures, and system disruptions.

Shadow AI Agents Emerge as Hidden Risk in Enterprises
As companies rush to adopt AI, a hidden risk is emerging: shadow AI agents operating outside of traditional IT control, leaving many organizations in the dark about where they exist, what they're connected to, and what actions they're taking. This growing visibility gap poses a significant operational risk, driven by teams experimenting with AI independently, often without fully understanding the security implications.