Content or resources for Okta's identity solution and its key features:
• Single Sign On (SSO)
• Adaptive MFA
• Lifecycle Management
• Workflows
• Identity Governance

[Disclaimer: The risk described in this article applies to ANY website or SaaS platform with a public authentication mechanism that allows using traditional 2FA, such as push approvals or OTP, not just Okta.](/content/mitm-attack-risk-on-okta/index.html)

📜 Background Story  
An enterprise client suffers a significant compromise; security teams and organizations with an IAM system could be affected.

[“Caution is the eldest child of wisdom.”](/content/lapsus-impact-on-okta/index.html)  
There is a fine line between what may seem like a minor, contained event and the actual damage LAPSUS$ could have inflicted when they had access to the right tools via the support engineer’s laptop.  
First, let’s take a look at the details regarding potential vulnerabilities.
