Password manager OneLogin suffers data breach

03 June, 2017, 01:53 | Author: Lorena Waters
  • OneLogin confesses to security breach

Following the recent rise in data breaches that have already hit companies like Yahoo, Dropbox, and Telegram, it now seems OneLogin is the latest to join the list as the company reported Wednesday an "unauthorised access to OneLogin data in our USA data region".

"Today we detected unauthorized access to OneLogin data in our USA data region", Hoyos wrote in the initial blog post.

Hackers have gained access to OneLogin, an online password manager that offers a single sign-on to multiple websites and services.

Yet the support page referenced in the email, a page which can only be viewed by customers logging in, allegedly added, "All customers served by our USA data center are affected; customer data was compromised, including the ability to decrypt encrypted data".

OneLogin's blog post includes no other details, aside from a reference to the company's compliance page. Last August, the company warned users that its Secure Notes service had been accessed by an "unauthorized user", but denied that any customer data had been compromised.

Alvaro Hoyos, OneLogin's chief information security officer, said in the blog post that the company discovered the breach yesterday, and that its investigation into what happened is ongoing.

John Clayton confirms he was laid off by ESPN
While Clayton will no longer contribute to ESPN he will continue with his local radio show on ESPN 710 Seattle. When he finishes, he pulls of a cutoff suit top to reveal he's wearing a cut off Slayer T-shirt.

With the database content as well as the ability to decrypt said database contents - an ability OneLogin having not yet explained precisely how the attacker or attackers could have - the company's customers are at considerable risk.

Password management provider OneLogin notified its customers on May 31 that it detected unauthorized access to user data.

"The threat actor was able to access database tables that contain information about users, apps, and various types of keys. We are thus erring on the side of caution and recommending actions our customers should take".

More in-depth instructions for account security can be found here.

For this reason, customers were advised to change their passwords, generate new API keys for their services, and create new tokens used for logging into accounts.

Gizmodo reached out to OneLogin for comment on yesterday's breach, but had not heard back at time of writing.

Recommended:

  • Deutsche Bank AG Reaffirms Hold Rating for St. James's Place plc (STJ)

    The stock of Williams Companies Inc (NYSE:WMB) earned "Outperform" rating by RBC Capital Markets on Monday, September 26. On average, equities analysts anticipate that BT Group plc will post $3.83 earnings per share for the current year.
    Schiff: Trump Needling Won't Change How We Conduct Russia Interviews

    Schiff: Trump Needling Won't Change How We Conduct Russia Interviews

    Those probes were previously helmed by Comey, the ex-FBI chief, and Brennan, the former Central Intelligence Agency director. Congressional committees have contacted a parade of Trump associates and advisers to request information in their probes.

    President Trump to Sign Waiver Keeping US Embassy in Tel Aviv

    Despite that, most experts are skeptical of Trump's chances for achieving a peace deal that had eluded other USA presidents. Moving the embassy would arguably threaten a two-state solution in which the agreed division of Jerusalem would be key.
  • China's Li appeals to Germany for help with certifying C919 jet

    Mr Li said he believed they two had found a solution on the issue of Chinese quotas for electric cars after a lengthy discussion.
    Man United fans loved Josh Harrop's debut against Crystal Palace

    Man United fans loved Josh Harrop's debut against Crystal Palace

    Manchester United must not underestimate Ajax Amsterdam in the Europa League final on Wednesday, defender Daley Blind has said. Jose Mourinho's absence from Manchester United's salute of their fans at Old Trafford bothers the FC crew.

    Kremlin says Russian Federation committed to Paris pact

    The Accord was an agreement among members of the United Nations to curb carbon emissions in an effort to combat climate change . Fighting climate change is a "global consensus" and an "international responsibility", China's prime minister Li Keqiang said.
  • SEC tweaks graduate transfer rules, opening door for UF to land Zaire

    SEC tweaks graduate transfer rules, opening door for UF to land Zaire

    The league stepped in and granted Smith to a waiver to transfer to Georgia. "There's a lot that remains to be done". In parts of three seasons with the Fighting Irish, Zaire threw for 816 yards with six passing touchdowns.
    LIGO detects gravitational waves for third time

    LIGO detects gravitational waves for third time

    LIGO made the first-ever direct observation of gravitational waves in September 2015 and the second detection in December 2015 . For the third time, physicists have detected a gravitational wave: a tiny ripple in the fabric of space-time.

    World leaders reaffirm commitment to fighting climate change

    Other European leaders issued more explicit appeals to the USA government not to abandon global measures against climate change . While he did not mention the United States or Donald Trump, Mr Li's comments were clearly addressed to Washington.
  • US and Japan stage joint military exercises

    US and Japan stage joint military exercises

    It has dual carriers in the ocean off the Korean Peninsula, and this is the first exercise of its kind since the late 1990's. Defense Department claims that the drills are not a muscle-flexing exercise meant to intimidate North Korea.

    Shooting heard at Manila leisure complex

    State Department said earlier it was not aware of any U.S. citizens being affected but was continuing to gather information. Witnesses reported seeing injured people, including a SWAT officer who rushed to the scene and was reportedly fired upon.
    Foo Fighters surprise release 'Run' after 2015

    Foo Fighters surprise release 'Run' after 2015

    The song itself is sheer Foos - earnest, heartfelt, and with those big crunching guitars lifting everything to a higher level. Fans of Foo Fighters are going insane this morning as they awoke to news that the group has released a new single.


Popular

Awkward! Donald Trump gaffe prompts Israeli Ambassador to face-palm during meeting
Similarly, he said , "In my meeting with my very good friend, Benjamin, I can tell you also that he is reaching for peace". Daniel Douek teaches comparative politics and worldwide relations at Concordia University and McGill University.

Former US Rep. Anthony Weiner faces charges in sexting case
But Clinton, and others, have said the scandal was partly the reason she lost the presidential election to Donald Trump. "I have a sickness, but I do not have an excuse", he said through pauses and bouts of tears in an emotional statement.

Spicer refers Russia questions to Trump's outside attorney
President Donald Trump's former campaign manager says he'd be willing to join the White House staff if "the right role is there". White House Communications Director, Mike Dubke , is resigning just three months after joining the Trump administration.

Keri Russell Receives Walk of Fame Honor with Boyfriend Matthew Rhys
Both the Felicity actors were in town for Russell's Hollywood Walk of Fame ceremony earlier that same day. He added, "It was a Chia-Head sort of vibe to it ... but it grew into something great".

Former Gunners Lauren backs new Arsenal deal for Arsene Wenger
And Wenger insists he drilled into his players that succeeding against Chelsea was more pertinent than what his own future holds. Mertesacker was starting his first game of the season after spending the entire campaign on the sidelines with a knee injury.