OneLogin suffers serious security breach

OneLogin suffers serious security breach

Despite saying that the company reached out to its customers "with specific recommended remediation steps", the email sent to customers was also lacking specifics about the OneLogin security breach.

"We detected unauthorised access to OneLogin data in our United States operating region".

OneLogin, an identity management company which provides a single sign-on platform for logging into multiple apps and sites, was hacked.

OneLogin's blog post includes no other details, aside from a reference to the company's compliance page.

According to a post on Twitter, though, the list of action items for affected customers is pretty extensive and involves a lot more than simply changing your password.

OneLogin's blog does say that customers have been told what to do in the wake of the attack and the email we've seen does "strongly advise" customers to visit support page to which we have linked.

More news: Ben Stokes stars as England hold off South Africa in thrilling ODI

The company is also encouraging users to update any API and OAuth credentials associated with third-party directories, such as G Suite, generate and apply new Desktop SSO tokens, recycle any secrets stored in Secure Notes, update any credentials used to authenticate to third-party apps for provisioning and update any admin-configured login credentials that may be used for form-based authentication.

The downside to password managers is that they become a single point of failure, and it is that downside that caught up with enterprise software firm OneLogin earlier this week.

The attacker was able to access "database tables that contain information about users, apps and various types of keys".

The company says it's working with law enforcement and an independent third-party company to investigate the breach. OneLogin didn't immediately respond to a request for comment.

"While we encrypt certain sensitive data at rest, at this time we can not rule out the possibility that the threat actor also obtained the ability to decrypt data", Hoyos added. The password service then unlocks other accounts as needed. This is not the first time a data breach has occurred at OneLogin and if lessons are learnt, it comes with a hefty cost. This means that many companies are going to spend today doing security clean-up.

Related Articles

  • Japan, US stage joint military maneuver amid tensions with North Korea

    Japan, US stage joint military maneuver amid tensions with North Korea

    The last dual carrier operation known to the public occurred previous year when USS Ronald Reagan and USS John C. US President Donald Trump has taken a very harsh stance toward North Korea since he took office four months ago.

    Trump's use of 'covfefe' has social media atwitter

    There is nothing unusual about this, given Trump's penchant for late-night tweets that often result in widespread controversy. Officer: "Do you know why I pulled you over?" With that, Trump's twitter feed went silent for the next five and half hours.
    CBS says Pelley out as 'CBS Evening News' anchor

    CBS says Pelley out as 'CBS Evening News' anchor

    More significant to Pelley's continued tenure, his newscast had the largest audience decline among the three network newscasts. Pelley will become a full-time correspondent for " 60 Minutes ", a CBS News announcement said Wednesday. said.
  • Israelis parade to mark 50 years of capturing East Jerusalem

    Israelis parade to mark 50 years of capturing East Jerusalem

    He also said he's confident the alliance between Israel and the USA will become greater and stronger under Trump's leadership. In his appearance with Abbas, Trump made what many took as a reference to Palestinian payments to the families of terrorists.

    Wenger set for two more years at Arsenal

    Arsenal are expected to announce whether Arsene Wenger will continue as their manager on Wednesday afternoon. I don't know if I'm capable but I have done it for 15 years.
    North Korea warns of 'bigger gift package' for US after latest test

    North Korea warns of 'bigger gift package' for US after latest test

    As a result, North Korea is stepping up its development of advanced weapons that would allow the country to defend itself. The US has said it is willing to enter into talks with North Korea - but only if it halts its missile and nuclear tests .
  • Trump White House Reportedly Proceeding To Reverse Obama-Era Punishment of Russian Federation

    Hammond told the Post that "U.S. and Russian Federation have reached no agreements", but Moscow is talking like it's a done deal. Administration or its representatives, we don't perceive the issue as a reason for whatever actions on our part".

    South Korea fires warning shots at North Korea over 'unidentified flying object'

    The United States has also called on all states to sever or downgrade diplomatic and commercial relations with North Korea . USA and South Korean officials and experts believe the North is several years away from having such a capability.

    Trump Likely Helped Gianforte's Special Election Win

    Republican Gianforte received only 67.9% of President Trump's November vote total. "We like to win, don't get me wrong". "Great win in Montana ", President Donald Trump said Friday as he attended the G-7 summit in Italy.
  • Jones: United aren't afraid of anyone

    Jones: United aren't afraid of anyone

    In the last couple of seasons, a lack of European football has been a key factor in allowing teams to break into the top four. Phil Jones is convinced Manchester United are on their way back after this season's double Cup success.

    Game 35: Derek Jeter Day

    There isn't one moment that can define Jeter's career. "To me, looking back on it, that was Derek", Girardi said. There were players who were more important to you or your friends or fans of teams that were not the Yankees .
    James surpasses Jordan as all-time playoff scoring leader

    James surpasses Jordan as all-time playoff scoring leader

    So the Warriors instead swept Portland, the team that chased down Denver for the eighth playoff spot in the Western Conference. Jordan was in his rearview mirror and still James deflected the attention like a kick-out to an open shooter in the corner.