Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

CVE-2022-47966 SAML ShowStopper

blog.viettelcybersecurity.com | vulnerability | CVE-2022-47966

Summary

1. IntroductionSAML(Security Assertion Markup Language) & OIDC (OpenID Connect) is the two main SSO (Single-Sign-On) standards. While OIDC is more popular, SAML is mostly used by enterprise organization to authenticate employee. SAML depends on XML signatures & XML Encryption to check if the message come from identity provider (IdP)
Published
Collected

original ↗

Related coverage

back