all InfoSec news
'Silver SAML' Haunts Entra ID SIngle Sign On Security
March 1, 2024, 2:22 a.m. |
GovInfoSecurity.com RSS Syndication www.govinfosecurity.com
A post-SolarWinds move away from Active Directory Federation Services to Azure AD - now known as Entra ID - didn't necessarily stop hackers from forging single sign on authentication messages, warn security researchers from Semperis, who unveiled an attack they dub "Silver SAML."
active directory attack authentication azure azure ad directory entra entra id federation golden hackers messages moving researchers saml security security researchers semperis services sign silver single solarwinds
More from www.govinfosecurity.com / GovInfoSecurity.com RSS Syndication
Jobs in InfoSec / Cybersecurity
SOC 2 Manager, Audit and Certification
@ Deloitte | US and CA Multiple Locations
Open-Source Intelligence (OSINT) Policy Analyst (TS/SCI)
@ WWC Global | Reston, Virginia, United States
Security Architect (DevSecOps)
@ EUROPEAN DYNAMICS | Brussels, Brussels, Belgium
Infrastructure Security Architect
@ Ørsted | Kuala Lumpur, MY
Contract Penetration Tester
@ Evolve Security | United States - Remote
Senior Penetration Tester
@ DigitalOcean | Canada