Okta has again suffered a security breach. Notable is that they are a Identification/MFA/federation supplier for many customers, yet they themselves to have been breached in the very arena that they are experts.
https://krebsonsecurity.com/2023/10/hackers-stole-access-tokens-from-oktas-support-unit/#more-65404
This is a distinctly different breach than we discussed last year:
https://community.isc2.org/t5/Threats/Okta-and-Microsoft-incidents-by-LAPSUS/m-p/50259#M494
And now, they are reporting the breach was broader than earlier reported, rising from 1% of customers to 100%.