Mike Sheward / @SecureOwl@infosec.exchange: Okta is really getting into the habit of dropping these gems on a Friday afternoon, and I'm starting to get a bit concerned. -- "We have discovered and resolved a vulnerability in Okta AD/LDAP DelAuth. ... Thirty six years almost to the day after the release of the Morris Worm, OKTA announces they've just patched a bug where you can just log in with no password if your username is too long. -- Could we please, before the Morris Worm turns forty years old, make a habit of, god help us all maybe even a standard practice of, sanitizing our inputs. ...