Skip to content

Commit 909f308

Browse files
Update rules/integrations/okta/credential_access_multiple_user_agent_os_authentication.toml
Co-authored-by: Isai <[email protected]>
1 parent a2f8ffd commit 909f308

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

rules/integrations/okta/credential_access_multiple_user_agent_os_authentication.toml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -48,7 +48,7 @@ same dt_hash. This will help identify the nature of the anomaly.
4848
- If compromise is confirmed, reset the user's credentials and enforce multi-factor authentication (MFA)
4949
- Revoke any active sessions associated with the compromised account to prevent further unauthorized access.
5050
- Review and monitor the affected dt_hash for any further suspicious activity.
51-
- Educate users about the importance of device security and the risks associated with device token tokens.
51+
- Educate users about the importance of device security and the risks associated with device tokens.
5252
- Implement additional monitoring for device token tokens and consider using conditional access policies to restrict access based on device compliance status.
5353
"""
5454
risk_score = 73

0 commit comments

Comments
 (0)