Okta just squashed a particularly unusual bug in its software.
The ????? ?????? ???digital security management company posted a bug fix report to its website (as spotted by The Verge) letting users know that a glitch in the system that theoretically allowed bad actors to gain access to accounts had been ironed out. Sounds normal enough, right? Well, here's the kicker: The bug could've allowed someone to log into an account without entering the passwordas long as the username was 52 characters or longer.
"During specific conditions, this could allow users to authenticate by only providing the username with the stored cache key of a previous successful authentication," Okta wrote.
It should be re-emphasized that this is no longer a concern for Okta users. The bug has been fixed. Unfortunately, it existed in the system for about three months, as Okta's report said the software had been affected since July until someone noticed on Oct. 30. That's a very long time for such a vulnerability to be present, but it's unclear at this point if anyone was negatively affected by it.
Topics Cybersecurity
Keeping readyMonolith mystery over? Stunt artists take credit and sell copies.Cruise starts testing fully driverless cars in San FranciscoThose sonic attacks on U.S. officials in 2017 might've been microwaves'Cyberpunk 2077' review: A slick game dogged by miles of asterisksThe best video games of 2020Apple now sells yoga mats and bike helmetsTaylor Swift announces new album 'evermore' dropping tonight. Yes, another one!Have an iPhone 11? Apple might owe you a free screen replacement.'Cyberpunk 2077' review: A slick game dogged by miles of asterisks Hugging Face empowers users with deepfake detection tools When is 'The Traitors' UK Season 2 coming to Peacock? TikTok and Instagram diet tips to avoid NYT's The Mini crossword answers for February 18 Dyson Airstrait deal: Save $120 via Best Buy Drops Wyze security camera owners once again report seeing strangers' feeds ChatGPT will now remember things about you Apple faces €500m fine from EU over Spotify complaint Air Canada loses court case after its chatbot hallucinated fake policies to a customer 'True Detective: Night Country' finale: Was time travel involved?
0.2445s , 10088.890625 kb
Copyright © 2025 Powered by 【????? ?????? ???】Enter to watch online.Okta just fixed a very weird security bug for accounts with long usernames,