Nov. 8, 2023, 8:12 p.m. | Matt Johnston - Manoj Ahuje - Stephen VanVaerenbergh - Chad Yoder

Cybersecurity Blog | CrowdStrike provinggrounds.cs.sys

CrowdStrike’s Incident Response team has seen a recent increase in cases involving adversaries that abuse identity provider federation to gain access to protected services by adding and authorizing rogue domains to federation. From these cases, patterns have emerged that indicate a common attack structure. Monitoring for identity provider abuse can be difficult, given that adversaries […]

abuse access adversaries attack cases cloud security crowdstrike domains featured federation identity identity provider incident incident response incident response team monitoring patterns response rogue services structure team

More from provinggrounds.cs.sys / Cybersecurity Blog | CrowdStrike

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Sr. Staff Firmware Engineer – Networking & Firewall

@ Axiado | Bengaluru, India

Compliance Architect / Product Security Sr. Engineer/Expert (f/m/d)

@ SAP | Walldorf, DE, 69190

SAP Security Administrator

@ FARO Technologies | EMEA-Portugal