<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00008YgrZoCAJOkta Classic EngineAdministrationAnswered2024-04-17T09:53:20.000Z2022-12-21T18:36:24.000Z2022-12-28T17:07:17.000Z

eitbu (eitbu) asked a question.

Exposure status regarding the Security Incident - Okta Code Repositories

Hi Team,

 

In reference to the advisory from Okta regarding suspicious access to Okta's GitHub account, which enabled copying of Okta Code Repositories. It mentioned more information in a blog post on 21st December, yet I can see no such title as of now.

 

I understand such things could consume time to gather precise information before it can be shared. Will await for the public disclosure with further information, and appreciate Okta's forthcoming notification and commitment to transparency.

 

//The security event pertains to Okta Workforce Identity Cloud (WIC) code repositories. It does not pertain to any Auth0 (Customer Identity Cloud) products.//

 

  1. Would appreciate more information on what exactly constitutes Okta Workforce Identity Cloud?
  2. And if the scope of an organization's usage falls under the purview of the affected repository (maybe with an inline notification within the organization's admin dashboard);
  3. If so, what further precautionary steps can be taken from the organization's side?

 

Reference: https://www.bleepingcomputer.com/news/security/oktas-source-code-stolen-after-github-repositories-hacked

 

Regards,

P.


LinusL.59687 likes this.
  • Mihai N. (Okta, Inc.)

    Hi @eitbu (eitbu)​ , Thank you for reaching out to the Okta Community!

     

    Information about the event has been posted on the following page:

    https://sec.okta.com/articles/2022/12/okta-code-repositories

     

    Details about Okta Workforce Identity Cloud can be found here:

    https://www.okta.com/workforce-identity/

     

    For any other questions that might not be covered, please open a case and our Support team will help you out. 

     

    If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you. 

     

    Hope my answer helps! 

    --------------------------------

    Community members help others by clicking Upvote or Select as Best on responses. Try it today.

    Expand Post
    Selected as Best
  • Mihai N. (Okta, Inc.)

    Hi @eitbu (eitbu)​ , Thank you for reaching out to the Okta Community!

     

    Information about the event has been posted on the following page:

    https://sec.okta.com/articles/2022/12/okta-code-repositories

     

    Details about Okta Workforce Identity Cloud can be found here:

    https://www.okta.com/workforce-identity/

     

    For any other questions that might not be covered, please open a case and our Support team will help you out. 

     

    If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you. 

     

    Hope my answer helps! 

    --------------------------------

    Community members help others by clicking Upvote or Select as Best on responses. Try it today.

    Expand Post
    Selected as Best
This question is closed.
Loading
Exposure status regarding the Security Incident - Okta Code Repositories