Business Daily Media

The Times Real Estate

.

Okta Study Finds Fraudulent Registrations and Credential Stuffing to be Top Threats to Digital Identities

Robust and resilient Customer Identity and Access Management (CIAM) exists at the vanguard of identity security

SINGAPORE - Media OutReach - 1 February 2023 - Okta, Inc. (NASDAQ: OKTA), the leading independent identity provider, today unveiled the APAC findings of its second annual State of Secure Identity Report highlighting key areas of concern for security professionals tasked with managing digital identities, including the exponential rise of fraudulent registration, credential stuffing attacks, and the widespread use of breached credentials.

Based on the data across the world from Okta Customer Identity Cloud, powered by Auth0, this report presents trends, examples, and real-world observations from the billions of identity attacks at various authentications touchpoints.

Research into these Okta global customers found the following key facts and figures:

  1. Fraudulent registrations are an ever-present and growing threat: In the first 90 days of 2022, Okta observed almost 300 million fraudulent account creation attempts, accounting for about 23% of signup attempts, up from 15% in the same period last year. Energy/Utilities and Financial Services experienced the highest proportion of signup attacks, with such threats accounting for most of the registration attempts in those two industries.
  2. Credential stuffing is on a record pace: Credential stuffing attacks are the most common threats to Retail/eCommerce (more than 80% login activity), Financial Services and Entertainment verticals. In the first 90 days of 2022, the platform detected almost 10 billion credential stuffing events, representing some 34% of overall traffic or authentication events. In Southeast Asia, which was buoyed by several large-scale attacks, credential stuffing accounts for the majority of identity events. The situation in Australia and New Zealand was more sanguine — normal traffic represents the majority of login events (63%), and only during a large attack does credential stuffing overtake legitimate traffic.
  3. Threat actors are targeting multi-factor authentication (MFA): In Asia Pacific, MFA bypass attacks are responsible for more events than signup attacks. Because of its proven merits, more application and service providers are recommending or requiring MFA. As attackers become more sophisticated at targeting this important defensive measure, it's critical that MFA be implemented correctly and that strong secondary factors are chosen.
  4. Every company faces unique challenges. The threats facing any particular application or service vary enormously by geography, industry, and brand prominence, among other factors. At the same time, different organizations have different risk appetites and exposures. The appropriate level of friction introduced by security measures will therefore vary on a company-to-company basis.
"Digital transformation will continue to be high on the priority list for many organizations, and a reliable CIAM could help businesses combat account takeover to protect consumers and businesses while boosting seamless consumer experience," said Ben Goodman, Senior Vice President and General Manager for Asia Pacific & Japan, Okta. "The first step towards implementing CIAM securely is to understand why and how adversaries are attacking these customer-oriented businesses," he added.

Applications gain users, identity takes on even greater Importance

As adversaries focus greater attention on attacking identity systems and evolving their tactics, techniques, and procedures (TTPs), the report highlighted that it is essential for application and service providers to:
  • Implement defence-in-depth tools that work in combination across the user, application, and network layers
  • Continually monitor their applications for signs of attacks and changes in TTPs; and
  • Make adjustments (e.g., tune parameters, tighten restrictions, introduce new tools, etc.) as needed.
Leaders across these functions should work together to implement CIAM in a manner that balances quality of customer experience and system security, in the context of desired use cases, customer types, data types, industry-specific risks, and risk appetite.

"Trust between customers and organizations is sacred and hard-earned, therefore it is crucial to make identity security a board-level issue. Placing identity security at the core of your business will allow your workers to focus on innovation, collaboration, and productivity while reducing overall identity-related risk," Goodman added.

Managing CIAM Threats

The report also highlighted that an agile, secure-by-design CIAM solution permits a considerable amount of flexibility that allow organizations to tailor customer identity and access management — and continually tune as needed — without drawing in resources better applied toward advancing core competencies.

The report recommends several solutions that involve combining multiple security tools that can operate at different layers and form a unified defensive position. These include implementing MFA, using generic failure messages that do not reveal system details, limiting failed login attempts, and implementing secure session management practices.

About The State of Secure Identity Report

This report is based on data from Okta customers around the world using Okta Customer Identity Cloud, powered by Auth0. As a result, it represents real-world observations of identity attacks. The data was retrieved by Okta security researchers by running simple and anonymous queries against our aggregate database of operational telemetry. Industry segmentations are based upon each customer's self-reported segment. Observations are from the first 90 days of 2022 unless otherwise noted. Okta's 2022 State of Secure Identity Report can be downloaded here.

Hashtag: #Okta

The issuer is solely responsible for the content of this announcement.

About Okta

Okta is the World's Identity Company. As the leading independent Identity partner, we free everyone to safely use any technology—anywhere, on any device or app. The most trusted brands trust Okta to enable secure access, authentication, and automation. With flexibility and neutrality at the core of our Okta Workforce Identity and Customer Identity Clouds, business leaders and developers can focus on innovation and accelerate digital transformation, thanks to customizable solutions and more than 7,000 pre-built integrations. We're building a world where Identity belongs to you. Learn more at okta.com.

News from Asia

"Relaxing Jiaxing" Creative Naming Journey Launches, A Hong Kong Influencer Lead the Way in Cultural Tourism

HONG KONG SAR - Media OutReach Newswire - 7 May 2025 - Recently, a well-known travel influencer from Hong Kong was invited by Jiaxing Municipal Bureau of Culture and Tourism and Putike Internation...

Amari Bangkok: Gateway to the Vibrant Heart of the City, Creating Unforgettable Experiences at Every Moment

BANGKOK, THAILAND - Media OutReach Newswire – 7 May 2025 - Located in the dynamic heart of Thailand's capital, Amari Bangkok is an upper-upscale luxury hotel managed by ONYX Hospitality Group — a ...

INIU Expands European Footprint Through Strategic Partnership with SFR

PARIS, FRANCE - Media OutReach Newswire - 7 May 2025 - Powering ahead with innovation, INIU, a globally trusted brand in portable power solutions, is proud to bring its products to even more Fren...

Rhenus signs MoU with Inland Waterways Authority of India (IWAI)

MUMBAI, INDIA - Media OutReach Newswire - 7 May 2025 - Through the Memorandum of Understanding (MoU), leading global logistics service provider, the Rhenus Group, will operate barge services in va...

INIU Partners with Boulanger to Launch Innovative Charging Products in France

PARIS, FRANCE - Media OutReach Newswire - 7 May 2025 - INIU has expanded its partnership with France's leading electronics retailer Boulanger, making its latest innovations—MagPro Slim 5K/10K, P...

New Report Highlights Need for Ecosystem Approach to Help MSMEs in Southeast Asia Adopt More Sustainable Practices

Report by the Centre for Impact Investing and Practices (CIIP) finds growing momentum among micro, small, and medium enterprises (MSMEs) in Southeast Asia to adopt sustainability practices...

His Highness Shaikh Mohammed Bin Sultan Bin Hamdan Al Nahyan acquires Warrants of Diginex Limited to Purchase 6.75 Million Ordinary Shares of Diginex for USD$300 million via a Private Transaction

LONDON, UNITED KINGDOM - Media OutReach Newswire - 7 May 2025 - Diginex Limited ("Diginex") (NASDAQ: DGNX), a global leader in ESG sustainable RegTech, is pleased to announce that His Highness Sha...

CTF Life Title-Sponsored "Fencing Plus" Training Programme by Kai Tak Sports Initiative Officially Kicks Off

Nearly 800 Students Participate in the Selection to Become Future World Champions HONG KONG SAR - Media OutReach Newswire - 7 May 2025 - Title-sponsored by CTF Life and organised by Kai Tak Sport...

Chubb Life Launches "Health Up" Insurance Plan to Foster a Wellness Lifestyle for the Tech-savvy Generation

HONG KONG SAR - Media OutReach Newswire - 9 May 2025 - Chubb Life Hong Kong today announced the launch of Health Up Insurance Plan (Health Up), a digital insurance plan aimed at promoting and faci...

F88 officially becomes a public company, paving the way for UPCOM listing

HANOI, VIETNAM - Media OutReach Newswire - 8 May 2025 - On May 6, F88 Investment Joint Stock Company (F88) was officially recognised as a public company, marking a major milestone in its growth an...

UNSW startup accelerator offers $200K to the next generation of Australian deeptech unicorns

UNSW Founders, Australia’s most recommended startup accelerator, has partnered with fund manager Luminary Partners to invest $200,000 each into 18...

The Future Is Now: AI Modernization Is Reshaping How Business Gets Done

The present business environment imposes stronger requirements on Australian organizations to match the fast-paced digital-first economy requireme...

Businesses losing an average of $493k from data integrity flaws

Managing data responsibly and effectively for the AI age can give organisations a strong competitive advantage, but many are failing to harness th...

AI shopping disruptor Zyft raises $7.5M to lead the next gen of retail tech

Zyft appoints new CEO, Richard Stevens, to lead the latest Waller Group success story, valued at $30 million SYDNEY, 28 April 2025: Zyft, the lea...

Little known law offers savvy Kiwis the opportunity to supercharge their retirement savings

A little-known legal amendment is being leveraged by savvy New Zealanders and expat Brits to supercharge their retirement savings. Not many peop...

Cutting edge AI technology designed for doctors to reduce patient wait times launched in NZ

New Zealand specialist doctors now have access to Artificial Intelligence technology to help reduce patient wait times and experts say it could be...

Sell by LayBy