TrollEye Security

Cyber News

Okta’s Data Breach Now Affects 100% of Their Customers

Okta has revealed that a breach originally estimated to affect less than 1% of customers actually impacted all of them, after attackers gained unauthorized access to a support system report

Details of The Story

Okta, a leading identity access management provider, recently revealed a significant security breach that impacted all of its customers, a sharp increase from the initial estimate of less than 1%. The breach, identified in September, involved unauthorized access to a report containing comprehensive user data from Okta’s customer support system, including names, email addresses, and other sensitive information. This breach poses a heightened risk of phishing and social engineering attacks, echoing previous incidents that affected companies like MGM Resorts and Caesars Entertainment.

In response, Okta’s Chief Security Officer, David Bradbury, has emphasized the need for enhanced security measures, particularly the adoption of multifactor authentication (MFA) and phishing-resistant authenticators. While there’s no current evidence of the leaked data being exploited, the situation has raised considerable concern among cybersecurity experts, who urge adherence to stringent cybersecurity practices.

Despite the security scare, Okta reported a more than 20% increase in revenues for the quarter ending October 31, indicating a complex relationship between security incidents and financial performance. However, this breach did have a temporary impact on Okta’s stock prices, and the long-term implications on the company’s reputation and customer trust are still unfolding. Industry observers have noted a shift in the market, with some companies looking to migrate away from Okta due to ongoing concerns about its security practices. This shift suggests a challenging period ahead for Okta as it works to rebuild confidence in its security measures and maintain its position in the market.

Share:

Live Webinar

From Discovery to
Risk Reduction

Operationalizing CTEM in Modern Security Programs

Date September 24, 2026
Time 2:00 PM Eastern

Learn how modern security teams can move beyond finding exposures and operationalize every stage of Continuous Threat Exposure Management.

01 Scope
02 Discover
03 Prioritize
04 Validate
05 Mobilize
Reserve Your Spot

Free registration · Live discussion and Q&A

This Content Is Gated