AuthFront (Authentication)

Increased Failed Login Attempts in Vista

Resolved

Incident Resolved: CTIM-1698
No further reports of problems. Incident is contained.
Please contact CTIM or see ticket for more details.

Updated

UPDATE:

Auth0 has confirmed the attack should be blocked at this point. Metrics are showing a drop in failed sign-ups at 3:06pm ET. We will continue to monitor the situation and contain the issue in the next 30min.

Updated

UPDATE:

Failed sign-up attempt numbers remain high, though Auth0 is currently implementing various methods to block the traffic. Next update in 30min or sooner.

Updated

UPDATE:

Auth0 is currently escalating this to their engineers to help mitigate the problem. Currently no impact to Vista customers, though rate limits could potentially cause an issue for new user sign-ups.

Updated

UPDATE:

Support teams are still working the issue with Auth0. Next update in 30min or sooner if more details become available.

Updated

UPDATE:

Internal CT teams have notified Auth0 of the issue. CT and Vista teams are currently discussing possible mitigation strategies. Next update in 15min.

Updated

UPDATE:

Access teams are actively looking into the issue. Next update in 15min.

Updated

UPDATE:
Escalation sent to: Vista: PBM (IRT)

Adding Vista IRT for visibility.

Investigating

New Incident: CTIM-1698
Priority: Critical
Escalation sent to: Access Domain for review.
Access domain teams have identified a massive increase in the number of failed login attempts to the Vista website, starting around 12pm ET. It appears that customers can still login as usual, but the abnormal amount of failed attempts could indicate a major issue. Access teams are coming online to review the issue.