Sci-tech

Identity manager OneLogin hacked, user data accessed

Identity manager OneLogin hacked, user data accessed”

But depending on the extent of OneLogin's breach, some enterprise companies might have to rethink trusting their confidential info to third-party cloud services. The attack started May 31, 2017 at about 2 a.m. PT, and OneLogin staff were alerted to it about seven hours later, when they shut down access. Services integrated into OneLogin include DropBox, Amazon Web Services, Office 365, Salesforce, Sharepoint, Slack and Zendesk.

"Today we detected unauthorized access to OneLogin data in our USA data region", Alvaro Hoyos, chief information security officer at OneLogin, said in a statement.

The company says that it is working with law enforcement and third-party investigators to find out more.

The impact of the attack is not yet known, but OneLogin has millions of users so the implications are pretty huge.

OneLogin positions itself as a security-enhancing tool, allowing its customers to sign on to multiple websites with a single shared identity.

OneLogin warned its customers in a posting on its website: "Today we detected unauthorised access to OneLogin data in our USA data region".

Single sign-on (SSO) specialist OneLogin has admitted to a breach that has left attackers unknown with customer data, potentially including the ability to decrypt sensitive account credentials.

OneLogin said in a blog post that it couldn't rule out the possibility that hackers got keys to reading encrypted data, such as stored passwords.

According to Hoyos, the hacker was able to infiltrate database tables that contained information such as users, apps, and key types. "We are thus erring on the side of caution and recommending actions our customers should take, which we have already communicated to our customers", Hoyos wrote.

If you use OneLogin to manage your passwords, then you will want to check your email, which I'm assuming is they way they'll contact customers, and see if they have any advice. This means that many companies are going to spend today doing security clean-up.

Customer data residing in password management service OneLogin was compromised when a "malicious actor" accessed information on keys used for encryption, the firm reports. This isn't the first time OneLogin has been targeted as it also detected unauthorized access back in August 2016.



Like this

Latest


03 June 2017
Pekka Rinne back from the dead, confident he can rebound
Penguins forward Jake Guentzel has tied Game 2 of the Stanley Cup Final against Nashville at 1-1 late in the first period. The teams traded first-period goals , with Pontus Aberg opening the scoring with a beauty for Nashville.

02 June 2017
Foo Fighters Crank Up the Heavy on New Song 'Run'
Fans of Foo Fighters are going insane this morning as they awoke to news that the group has released a new single. The track is called " Run ", the band's first new music since their free Saint Cecilia EP , released in 2015.

02 June 2017
Former FBI Director James Comey to testify in Senate June 8
Subpoenas were approved Wednesday for Flynn and his company, Flynn Intel Group, and Cohen and his firm, Michael D. Mueller was chosen to lead the department's investigation on May 17 amid concern of political interference.

31 May 2017
Del Potro wins 1st match at French Open since 2012
What I like about clay? 'I also don't like how my shoes get dirty. "I don't train too much on clay as it makes my auto dirty". Lokoli later said Klizan was the one who did not respect him because he kept simulating injuries throughout their match.

30 May 2017
Celtics star Isaiah Thomas unsure if he'll need hip surgery
The Cleveland Cavaliers could well be on their way to the third NA final in 3 years and they have Kyrie Irving to thank for this. James was asked whether he could envision a rematch with the Celtics in next year's East finals.

30 May 2017
Fugitive Cornered By Police On Queensland Property After Officer Shot Dead
Much is often said about the difference in police use of force in the United States and other countries, including Australia. Facebook Senior Constable Brett Forte was allegedly killed by Rick Charles Maddison, 40, as he tried to evade police.

29 May 2017
Iran's Election Signals Reset with the Rest of the World
President Rouhani won 23.5 million of Iran's total 41 million votes, his next nearest rival winning only 15.8 million votes. Moazzami said the multilateral nuclear agreement that brought sanctions relief to Iran was paying off nonetheless.

28 May 2017
Schapelle Corby considered for death penalty
When one lensman raised a camera to peer over the fence his curiosity was rewarded with a bucket over water tipped over his head. Just after 10pm local time on Saturday she posted a photo on Instagram with just one word - "boarded".

28 May 2017
Jim Hackett was named CEO of Ford on Monday
GLINTON: A problem for the new CEO, Jim Hackett , is effectively telling the story of Ford to its shareholders. Here are some major events that occurred during Fields' tenure. "There is no smoking gun here", he said.

27 May 2017
Lib Dems call for overhaul of waste taxes
Under a Liberal Democrat government, more restaurants and takeaways would also be encouraged to present nutritional information. The Liberal Democrats said a system is needed that supports farmers, ensures food production, and protects the environment.



Recommended