Clankerusecase
Okta detection coverage
← Back to main site
Home/ Targets/ Okta

🔑Okta detections

Clankerusecase tracks 6 detection use cases covering the Okta attack surface across 9 MITRE ATT&CK techniques.

Detections targeting Okta IDP — system log, MFA factor changes, admin grants.

Open Detection Library → View on the matrix
6Use cases
9Techniques
0Articles
3Kill-chain phases

Top techniques on Okta (9)

Delivery (2)

Okta MFA bypass attempt Internal delivery · alerting DD Okta user account locked Internal delivery · alerting DD

Installation (3)

Okta administrative role assigned to user Internal install · alerting DD Okta application access granted to user Internal install · alerting DD Okta authentication / sign-on policy modified Internal install · alerting DD

Actions on Objectives (1)

[WEEKLY] Vendor / Third-Party OAuth App or SP Sign-in From Unbaselined Egress Followed by Bulk SaaS Object Read Internal actions · alerting DSPDD