Thursday, December 19, 2024
HomePassword AttacksOneLogin Password Manager databse Hacked Users’ Credentials May be Decrypted

OneLogin Password Manager databse Hacked Users’ Credentials May be Decrypted

Published on

SIEM as a Service

One login is a Cloud-based Password Manager which concedes a remarkable data breach, the attacker’s steal client’s credentials.

A password manager helps with creating, putting away, and recovering complex passwords from a scrambled database.Types of password managers incorporate locally installed programming applications, online administrations that are gotten to through web-based interfaces, locally accessed hardware devices that fill in as keys.
Are you using the onelogin password manager?, Need to Change your passwords immediately.

They announced, “recently we detected that a malicious actor had obtained access to our US operating region.”

Attack method

From Onelogin Blog post they recognize the threat actor obtained access to a set of AWS keys and used them to access the AWS API from an intermediate host with another, smaller service provider in the US.

- Advertisement - SIEM as a Service
The attack originated around  May 31, 2017, around 2 am PST.

Alvaro Hoyos CISO of OneLogin’s says Through the AWS API, the actor created several instances in our infrastructure to do reconnaissance. The onelogin staff was alerted of unusual database activity around 9 am PST and within minutes shut down the affected instance as well as the AWS keys that were used to create it.

Customer Impact

The threat actor could get to database tables that contain data about clients, applications, and different sorts of keys.

At this time they are not able to assure that the attacker can decrypt the stolen data.

OneLogin’s investigation is ongoing and is aided by independent third-party security experts, as well as law enforcement. We will update this when there is more information we can share, as appropriate. We thank you again for your continued support. says Hoyos.

Also read

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Fortinet Critical Vulnerabilitiy Let Attackers Inject Commands Remotely

Fortinet, a global leader in cybersecurity solutions, has issued an urgent security advisory addressing...

Critical Chrome Vulnerabilities Lets Attackers Execute Arbitrary Code Remotely

Google has released a new security update on the Stable channel, bringing Chrome to...

CISA Released Secure Mobile Communication Best Practices – 2025

The Cybersecurity and Infrastructure Security Agency (CISA) has released new best practice guidance to...

New VIPKeyLogger Via Weaponized Office Documenrs Steals Login Credentials

The VIPKeyLogger infostealer, exhibiting similarities to the Snake Keylogger, is actively circulating through phishing...

API Security Webinar

72 Hours to Audit-Ready API Security

APIs present a unique challenge in this landscape, as risk assessment and mitigation are often hindered by incomplete API inventories and insufficient documentation.

Join Vivek Gopalan, VP of Products at Indusface, in this insightful webinar as he unveils a practical framework for discovering, assessing, and addressing open API vulnerabilities within just 72 hours.

Discussion points

API Discovery: Techniques to identify and map your public APIs comprehensively.
Vulnerability Scanning: Best practices for API vulnerability analysis and penetration testing.
Clean Reporting: Steps to generate a clean, audit-ready vulnerability report within 72 hours.

More like this

Chinese Hackers Attacking Microsoft Customers With Sophisticated Password Spray Attacks

Researchers have identified a network of compromised devices, CovertNetwork-1658, used by Chinese threat actors...

10 Best WiFi Hacking Apps for Android – 2024 Edition

In this article, we are sharing the top “Wi-Fi hacking Apps“ for Android applicants....

Brutespray – Port Scanning and Automated Brute Force Tool

Brutespray is a Python script that provides a combination of both port scanning and automated...