Authentication Risks Discovered in Okta Platform

Researchers have discovered four “high impact” security risks in the identity and access management (IAM) platform Okta, according to a Tuesday report. The risks include cleartext password leakage via SCIM – the System for Cross-domain Identity Management – sharing of passwords and other data over unencrypted HTTP channels, default configurations which allow admins to invade other organizations’ IT environments, and mutable identity log spoofing.

Read full article on Threat Post


