OOI A.I CyberSecurity Scoring
OOI
Company Information
Website:http://onelogin.com?utm_source=orgsocial&utm_medium=linkedin
Employees number:55
Number of followers:20,821
NAICS:5415
Industry Type:IT Services and IT Consulting
Homepage:onelogin.com
OOI Risk Score (AI oriented)
Between 700 and 749
OOIIT Services and IT Consulting
Updated:
02/04/2026
02/04/2026
734/1000
Moderate
Ba
OOI Global Score (TPRM)
xxxx
OOIIT Services and IT Consulting
Score locked

OOIModerate
Current Score
734Ba (MODERATE)
01000
3 incidents
0 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
SEPTEMBER 2026
737
AUGUST 2026
736
JULY 2026
736
JUNE 2026
736
MAY 2026
735
APRIL 2026
735
MARCH 2026
734
FEBRUARY 2026
734
JANUARY 2026
734
DECEMBER 2025
733
NOVEMBER 2025
733
OCTOBER 2025
732
JUNE 2025
735
Vulnerability
12 Jun 2025 • OOI
OneLogin
OneLogin AD Connector Service Vulnerabilities
730
CRITICAL-5
ONE438061225
A comprehensive security investigation revealed critical vulnerabilities in OneLogin’s Active Directory (AD) Connector service, exposing authentication credentials and enabling attackers to impersonate legitimate users across enterprise environments. The vulnerabilities allowed threat actors to generate valid JSON Web Tokens (JWT) and gain unauthorized access to customer systems. The exposed credentials included cleartext AWS credentials, API keys, and cryptographic signing keys, leading to widespread unauthorized access across an organization's federated applications. This demonstrated a complete compromise scenario, highlighting systemic issues in OneLogin’s infrastructure management.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
DATA BREACH
REFERENCES
JUNE 2017
698
Breach
01 Jun 2017 • OOI
OneLogin by One Identity
Unauthorized Access to OneLogin Systems
632
CRITICAL-66
ONE102261123
The OneLogin firm declared that it had found evidence of unauthorised access to its US-based systems.
After a review by the organisation, it was determined that a threat actor had access to a set of AWS keys and had utilised them to access the AWS API through an intermediary host that was hosted by a different, smaller US service provider.
Regarding the weaknesses that hackers used to gain access to the organisation, nothing is known.
OneLogin attested to the encryption of the data, but it also noted that threat actors may still be able to decrypt it.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
SEPTEMBER 2016
750
Breach
01 Sep 2016 • OOI
OneLogin by One Identity
OneLogin Data Breach
688
HIGH-62
ONE1539622
OneLogin, a cloud-based single sign-on and identity management service provider with over 1400 enterprise customers in 44 countries, suffered from a data breach incident.
An unauthorized user gained access to the system by compromising a OneLogin employee’s password for the system.
A bug that encrypted the data after that notes visible in the logging system and stored in the hackers database.
INCIDENT DETAILS -
TYPE
REFERENCES
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for OOI ??
What was OOI's A.I Rankiteo Cyber Score in August 2026 ??
What was OOI's A.I Rankiteo Cyber Score in July 2026 ??
What was OOI's A.I Rankiteo Cyber Score in June 2026 ??
What was OOI's A.I Rankiteo Cyber Score in May 2026 ??
What was OOI's A.I Rankiteo Cyber Score in April 2026 ??
What was OOI's A.I Rankiteo Cyber Score in March 2026 ??
What was OOI's A.I Rankiteo Cyber Score in February 2026 ??
What was OOI's A.I Rankiteo Cyber Score in January 2026 ??
What was OOI's A.I Rankiteo Cyber Score in December 2025 ??
What was OOI's A.I Rankiteo Cyber Score in November 2025 ??
What was OOI's A.I Rankiteo Cyber Score in October 2025 ??
What is the average per-incident point impact on OOI's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with OOI ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view OOI's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?