An account takeover (ATO) is an identity attack where an attacker gains unauthorised access using a range of attack methods such as credential stuffing, phishing, and session hijacking to gain access to customer accounts and steal something of value.
What types of attacks does Okta’s account takeover solution prevent?
We know attackers leverage a number of different attack vectors, so we built protections against the most common attack types.
Okta products for layered protection against account takeovers
Adaptive Multi-Factor Authentication
Okta’s Adaptive Multi-Factor Authentication (AMFA) analyses risk from contextual signals associated with a login request. With no user input or interaction, AMFA can be a powerful ally against account takeovers by:
Analysing signals associated with an authentication request
Using AI/ML in conjunction with a heuristics-based policy engine for security coverage
Integrating Okta’s threat-feed to provide insight into an attacker’s profile
Eliminating friction for legitimate users by only prompting MFA during elevated risk scenarios