hello@swfit.ioOn-site from Tampa to Naples

Okta investigating reports of possible digital breach

By Mary Kay Mallonee, Andrea Cambron and Sean Lyngaas, CNN
The Okta Inc. website on a laptop computer arranged in Dobbs Ferry, New York, U.S., on Sunday, Feb. 28, 2021.

The Okta Inc. website on a laptop computer arranged in Dobbs Ferry, New York, U.S., on Sunday, Feb. 28, 2021.

Okta is investigating reports of a possible digital breach, the software company said early Tuesday. “Okta is aware of the reports and is currently investigating,” Okta spokesperson Chris Hollis told CNN in a statement. “We will provide updates as more information becomes available. “The company’s software allows businesses to authenticate the identity of their customers and employees. Okta has more than 15,000 customers, according to its website.

Shares of Okta were down nearly 8% in premarket trading Tuesday.

Reuters first reported that Okta was looking into reports of a possible digital breach after a hacking group known as Lapsus$ claimed responsibility for the incident and published screenshots claiming access to an Okta internal administrative account and the firm’s Slack channel.

Lapsus$, a mysterious hacking group that emerged in December, claimed on the messaging app Telegram that it did not steal any databases from Okta itself, but that “our focus was ONLY on Okta customers.”Okta CEO Todd McKinnon tweeted early Tuesday morning that the firm believes those screenshots are related to a security incident in January that was contained.”In late January 2022, Okta detected an attempt to compromise the account of a third party customer support engineer working for one of our subprocessors,” McKinnon tweeted, referring to a subcontractor that works with Okta. “The matter was investigated and contained by the subprocessor.”Lapsus$ has claimed to have stolen data from several high-profile corporate victims since December. The group began by focusing on Latin American victims and some security researchers suspect the group is based in Latin America.

But much about the group is a mystery. There is no evidence that the hackers have used ransomware to try to extort the victims, according to a March 17 analysis by cybersecurity firm Digital Shadows. The group appears to have tried to recruit rogue employees at companies who would be willing to cough up passwords to help with the hacks, Digital Shadows analysts said.

Lapsus$ has gone out of its way on its Telegram channel to emphasize that it is “not state sponsored” and that its “only goal is money.”

Picture of Nicholas Salem

Nicholas Salem

As the CEO of SWFIT, a leading managed IT services company, Nick Salem is responsible for providing strategic leadership and direction to the organization. With over 20 years of experience in the IT industry, Nick has a strong track record of driving business growth and improving operational efficiency through the use of technology.

Free assessment

Not sure where you stand?

Thirty minutes on your security, backups, and Microsoft 365, with a straight answer on what to fix first.

Keep reading

IT technician checking backup server racks for a Southwest Florida small business

Microsoft 365 Backup: Why Southwest Florida Businesses Still Need One

No, Microsoft does not back up your Microsoft 365 data the way most business owners assume. Microsoft runs the servers and keeps the lights...

IT technician checking server equipment in a data center rack

October 2026 Patch Tuesday: The Exchange Server Flaw Southwest Florida Businesses Can’t Ignore

Microsoft’s October 2026 Patch Tuesday shipped only one fix, but it matters: a high-severity elevation-of-privilege flaw in on-premises Exchange Server that lets someone who’s...

Person reviewing app permissions on a laptop showing a Microsoft 365 login and security consent screen

OAuth Consent Phishing: The Microsoft 365 Attack That Skips Your Password

OAuth consent phishing tricks a Microsoft 365 user into approving a malicious third-party app instead of handing over a password. Once that app is...

Free assessment

Thirty minutes. A straight answer.

  • A plain-English read on your security, backups, and Microsoft 365
  • The three fixes that matter most, with rough costs
  • An honest answer on whether you need us at all

Book your assessment

We call you within one business day to set a time. No sales deck.

Prefer the phone? (813) 999-0086