Researchers at Authomize have identified four security risks in the identity and access management (IAM) platform Okta, which could expose personal identifiable information (PII), allow for account takeovers, or destroy organizational data. The issues include password leakage, unencrypted data sharing, unsafe default configurations, and identity log spoofing. It was noted these findings didn’t classify as vulnerabilities, with Okta stating its features function as intended. However, the researchers insist that independent security measures ought to be proactively implemented in relation to IAM tools.

The NHS needs to tighten its third-party supplier cybersecurity
The NHS should proactively fortify cybersecurity within its third-party software suppliers following recent damaging ransomware attacks, says Jonathan Lee from Trend Micro. He suggests implementing