When you purchase through links on our site, we may earn an affiliate commission.Heres how it works.
The attackers apparently tried to get into the IT employees Okta dashboard, unsuccessfully.
They also updated an existing identity provider (IDP) tied to 1Passwords productionGoogleenvironment and activated the IDP.
Finally, they requested a report of admin users, of which all admins were notified.
This notification raised red flags all around and helped the company prevent a bigger incident.
ViaArsTechnica