Supply Chain Council of European Union | Scceu.org
News

Lapsu$ group claims Okta supply chain attacks

The Lapsu$ extortion group posted screenshots to its Telegram channel Monday night they say prove they breached identity management vendor Okta. The group said the Okta breach was not intended to get data from Okta, but instead leverage the access to Okta to attack Okta clients.

Lapsu$ is a group that extorts the companies under the threat of leaking data – ransom without the ransomware – best known for leaks of Samsung files.

“For a service that powers authentication systems to many of the largest corporations (and FedRAMP approved) I think these security measures are pretty poor,” the Lapsu$ post read.

In addition to the Okta announcement last night, they leaked what they claimed was source code for Microsoft’s Cortana, Bing and Bing Maps.

On Twitter, Okta chief executive Todd MicKinnon confirmed that the company had been breached in January, which Okta believes was the source of the screenshots.

Lapsu$ Telegram post.

“In late January 2022, Okta detected an attempt to compromise the account of a third party customer support engineer working for one of our subprocessors. The matter was investigated and contained by the subprocessor,” he wrote.

After posting screenshots, Lapsu$ claimed in an all-capital-letters update, that Okta was breached not for its own data, but as a supply chain attack.

According to Brett Callow, a ransom group expert with Emsisoft, any Lapsu$ claims should be taken with a professional criminal-sized grain of salt.

“None of Lapsus$’ claims should be taken at face value,” he said via electronic chat. “Cybercriminals aren’t noted for their honesty – however, their claims seem to have been accurate so far.”

Investigators have so far found Lapsu$ a tough group to make sense of. They appear to be very disorganized while also being extremely capible, given their targeting, said Callow.

Related posts

Supply Chain Management Market 2020 Growth, Size, Share, Trends Analysis And Forecast To 2025

scceu

Taking stock: Supply chain issues vary for Mountain Brook business

scceu

Supply chain issues impacting ice fishing | News

scceu