Skip to content

Comment on Okta: “We made a mistake” delaying the Lapsus$ hack disclosure

Comments

What of the rumors about AWS keys being leaked through slack channels that the support account had access to?

That was plastered all over the HN and reddit threads a few days ago, no mention of it from Okta yet. Did that turn out to be bogus?

I missed that, might you or someone else have a link? I'm not seeing it.

It was claimed in the $lapsus Telegram chat by $lapsus themselves: https://twitter.com/_MG_/status/1506345542837628932/photo/1

From the screenshot:

I don't think storing AWS keys within Slack would comply to any of these standards?
AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.