Get the latest tech news

Okta vulnerability allowed accounts with long usernames to log in without a password


Okta has fixed a vulnerability that let people log in without a password if the username has 52 characters or more.

The company didn't say whether it's aware of anybody who's been affected by this specific issue, but it promised to "communicate more rapidly with customers" in the past after the threat group Lapsus$ accessed a couple of users' accounts. Amazon Prime members can claim a ton of PC games at no extra cost in November, including Dishonored, Guardians of the Galaxy, a Mafia remake, Super Meat Boy and Overcooked. And, while far from perfect, his administration did a lot of work to grow the nation’s fiber-optic infrastructure, free up wireless spectrum and expand access to subsidies for low-income families.

Get the Android app

Or read this on Endgadget

Read more on:

Photo of Password

Password

Photo of Accounts

Accounts

Photo of long usernames

long usernames

Related news:

News photo

An Okta login bug bypassed checking passwords on some long usernames

News photo

How a series of opsec failures led US authorities to the alleged developer of the Redline password-stealing malware

News photo

MPA is Concerned About Plans to 'Outlaw' Password Sharing Restrictions