Okta
November 2024
November 2024
Vol. 7, Iss. 45
Robin’s Newsletter #334
Okta auth bypass for long usernames. Copyright infringement notices used to drop infostealers. Schneider Electric attacker wants payment in baguettes.
February 2024
February 2024
Vol. 7, Iss. 5
Robin’s Newsletter #294
FBI disrupted Volt Typhoon activity. Moody's downgrades UK water sector due to cyber threat. Stolen FTX millions linked to US SIM swapping ring.
November 2023
November 2023
Vol. 6, Iss. 45
Robin’s Newsletter #281
SEC charges SolarWinds CISO. Countries vow not to pay ransomware demands. Major updates to CVSS.
October 2023
October 2023
Vol. 6, Iss. 44
Robin’s Newsletter #280
1Password, Cloudflare amongst 170 caught up in Okta breach. UK Online Safety Bill becomes law. Lawful intercept against Russian chat service.
Vol. 6, Iss. 43
Robin’s Newsletter #279
Five Eyes security chiefs warn of espionage threat. Two ransomware gangs taken out. Thousands of Cisco devices compromised.
September 2023
September 2023
Vol. 6, Iss. 37
Robin’s Newsletter #273
Results of Microsoft investigation into US government email compromise. Online Safety Bill E2EE clause to remain unenforced until 'technically feasible'.
Vol. 6, Iss. 36
Robin’s Newsletter #272
FBI takes down Qakbot. Two arrested for Polish train disruption. Met Police supplier loses personal data of 47,000 officers.
December 2022
December 2022
Vol. 5, Iss. 52
Robin’s Newsletter #236
LastPass customer vault data stolen in breach. EternalBlue-style vulnerability in Windows. Okta source code stolen.
October 2022
October 2022
Vol. 5, Iss. 40
Robin’s Newsletter #224
Optus breach attacker retracts demands as attention grows. Rise in fake LinkedIn CISO profiles. Microsoft Exchange Zero-Day.
April 2022
April 2022
Vol. 5, Iss. 14
Robin’s Newsletter #198
Okta says it made a mistake. Wiper malware used against Viasat modems during Russian invasion of Ukraine. DCMS' cyber survey stats.
March 2022
March 2022
Vol. 5, Iss. 13
Robin’s Newsletter #197
The rise, and fall?, of Lapsus$ as Okta confirm breach. US CNI cyberattack warning. Build capabilities, not plans for resilience.