Auth0 vs Okta vs Stytch vs WorkOS vs SSOJet (2026): A Buyer-Stage Framework

The five CIAM contenders in 2026 don't compete head-on. Each wins for a different stage and buyer. Here's the framework I use, with the honest tradeoffs each carries ...
U.S., Korea, North Korea cyberespionage nuclear weapons

Americans Sentenced for Hosting Laptop Farms for N. Korean Worker Scams

Two more U.S. citizens were sent to prison for their roles in hosting laptop farms for North Korea's pernicious IT worker scams, which cheat U.S. companies of millions of dollars they pay ...
Security Boulevard
National Public Data breach lawsuit

ADT Breach Exposes Data of 5.5 Million Customers, ShinyHunters Likely Behind Attack

The ShinyHunters extortion group is claiming responsibility for a breach of home and commercial security vendor ADT that exposed the data of 5.5 million customers. attack appears to be part of a ...
Security Boulevard
credentials EUAC CUI classified secrets SMB

ShinyHunters Leads Surge in Vishing Attacks to Steal SaaS Data

Several threat clusters are using vishing in extortion campaigns that include tactics that are consistent with those used by high-profile threat group ShinyHunters. They are stealing SSO and MFA credentials to access ...
Security Boulevard
Mapping Mayhem: Security's Blind Spots in Identity Security

Mapping Mayhem: Security’s Blind Spots in Identity Security

For years, primarily driven by regulatory compliance mandates, such as the Sarbanes-Oxley Act of 2002, identity and access management has been treated as a regulatory compliance exercise, rather than the security exercise ...
Security Boulevard
Okta Introduces Cross App Access to Secure AI Agents in Enterprise

Okta Introduces Cross App Access to Secure AI Agents in Enterprise

Okta Inc. on Monday said it has created a new protocol to secure artificial intelligence (AI) agents to bring visibility, control and governance to agent-driven and app-to-app interactions. The Cross App Access ...
Security Boulevard
zero-trust, Okta, security, machine-led, GenAI

Solving the Identity Crisis: Okta Redefines Security in a Machine-Led World 

Okta is stepping forward with its boldest platform evolution yet, aiming to unify identity across human and machine actors, and extend zero-trust all the way from cloud to on-premises ...
Security Boulevard
The Advanced Persistent Teenager: New Cybersecurity Threat?

Advanced Persistent Teenagers, Okta Bug Allowed Logins Without a Correct Password

In episode 354, we discuss the emergence of the term ‘Advanced Persistent Teenagers’ (APT) as a “new” cybersecurity threat. Recorded just before the election, the hosts humorously predict election outcomes while exploring ...
Demystifying Okta Attacks with Dorothy and Splunk

Demystifying Okta Attacks with Dorothy and Splunk

https://github.com/elastic/dorothyOverviewOkta is a leading identity and access management (IAM) platform designed to help organizations securely manage and streamline user authentication and authorization. It provides a comprehensive suite of services, including single sign-on ...
How to Correctly Use Client IP Addresses in Okta Audit Logs to Improve Identity Security 

How to Correctly Use Client IP Addresses in Okta Audit Logs to Improve Identity Security 

Being able to identify client IP addresses is essential for detecting and preventing identity-related threats. These IP addresses help establish a baseline of identity activities and highlight deviations often associated with threat ...