okta-attack
CommunityMap Okta-based attack chains for red teams.
Authorelementalsouls
Version1.0.0
Installs0
System Documentation
What problem does it solve?
Enables security teams to identify and map Okta-as-IdP attack surfaces across tenants, enumerate potential user and MFA configurations, and assess post-compromise exposure within enterprise environments.
Core Features & Use Cases
- Tenant discovery and enumeration across Okta domains (e.g., tenant.okta.com, tenant.okta-emea.com, oktapreview.com) to identify attack surfaces.
- MFA factor analysis and attack-chain mapping (push fatigue, SMS, TOTP, and other factors) to prioritize testing vectors.
- Post-compromise admin API surface checks (session tokens, admin endpoints, and federation misconfigurations) across federated apps.
- Use Case: If recon reveals an Okta IdP, load the Okta attack chain to plan authenticated-access tests and risk-based remediation.
Quick Start
Describe your target environment in plain English to load the Okta-attack chain and generate an actionable engagement plan.
Dependency Matrix
Required Modules
None requiredComponents
Standard package💻 Claude Code Installation
Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.
Please help me install this Skill: Name: okta-attack Download link: https://github.com/elementalsouls/Claude-BugHunter/archive/main.zip#okta-attack Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
Agent Skills Search Helper
Install a tiny helper to your Agent, search and equip skill from 510,000+ vetted skills library on demand.