TechnologyAn Okta login bug bypassed checking passwords on some...

An Okta login bug bypassed checking passwords on some long usernames


Illustration of a password above an open combination lock, implying a data breach.
Illustration by Cath Virginia / The Verge | Photo from Getty Images

On Friday evening, Okta posted an odd update to its list of security advisories. The latest entry reveals that under specific circumstances, someone could’ve logged in by entering anything for a password, but only if the account’s username had over 52 characters.

According to the note people reported receiving, other requirements to exploit the vulnerability included Okta checking the cache from a previous successful login, and that an organization’s authentication policy didn’t add extra conditions like requiring multi-factor authentication (MFA).

Here are the details that are currently available:

On October 30, 2024, a vulnerability was internally identified in generating the cache key for AD/LDAP DelAuth. The Bcrypt algorithm was…

Continue reading…



Original Source Link

Latest News

Death Toll In Lebanon Crosses 3,000 In The 13-month Israel-Hezbollah War, Health Ministry Says

BEIRUT (AP) — The 13-month war between Israel and Hezbollah has killed more than 3,000 people in Lebanon,...

Will Tropical Storm Rafael Strengthen into a Hurricane? Latest Updates – Hollywood Life

Rafael—formerly Tropical Depression 18—was named Monday after strengthening into a tropical storm, but it appears it’s not stopping...

Conservationists sue U.S. to block a controversial lithium mine in Nevada

They say the lithium mine will drive an endangered desert wildflower to extinction, disrupt groundwater flows and threaten...

Bitcoin Poised For $75,000 As Trump-Harris Race Tightens: QCP

Este artículo también está disponible en español. The Bitcoin price has posted five consecutive red daily candles since it...

Higher for longer no matter who’s in charge

This article is an on-site version of our Swamp Notes newsletter. Premium subscribers can sign up here to...

An Oath Keeper Talks Civil War Over Pastrami and Rye

But, Arroyo said it’s “very likely” that if Trump loses, “the right wing, the Republican Party, some nut...

Must Read

How a PhD Student Discovered a Lost Mayan City From Hundreds of Miles Away

A new Mayan city, lost in the dense...

Despite hurricanes, ULI ranks Tampa Bay as one of country's hottest real estate markets

"Much of Tampa’s previous housing affordability has eroded,...
- Advertisement -

You might also likeRELATED
Recommended to you