<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: New Silver SAML Attack Evades Golden SAML Defenses in Identity Systems in Threats</title>
    <link>https://community.isc2.org/t5/Threats/New-Silver-SAML-Attack-Evades-Golden-SAML-Defenses-in-Identity/m-p/67824#M1095</link>
    <description>&lt;P&gt;Thanks so much for the update&amp;nbsp;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/809125741"&gt;@Caute_cautim&lt;/a&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sun, 03 Mar 2024 01:36:00 GMT</pubDate>
    <dc:creator>Kyaw_Myo_Oo</dc:creator>
    <dc:date>2024-03-03T01:36:00Z</dc:date>
    <item>
      <title>New Silver SAML Attack Evades Golden SAML Defenses in Identity Systems</title>
      <link>https://community.isc2.org/t5/Threats/New-Silver-SAML-Attack-Evades-Golden-SAML-Defenses-in-Identity/m-p/67821#M1092</link>
      <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cybersecurity researchers have disclosed a new attack technique called &lt;STRONG&gt;Silver SAML&lt;/STRONG&gt; that can be successful even in cases where mitigations have been applied against Golden SAML attacks.&lt;/P&gt;&lt;P&gt;Silver SAML "enables the exploitation of SAML to launch attacks from an identity provider like Entra ID against applications configured to use it for authentication, such as Salesforce," Semperis researchers Tomer Nahum and Eric Woodruff &lt;A href="https://www.semperis.com/blog/meet-silver-saml" target="_blank" rel="noopener"&gt;said&lt;/A&gt; in a report shared with The Hacker News.&lt;/P&gt;&lt;P&gt;Golden SAML (short for &lt;A href="https://www.cloudflare.com/learning/access-management/what-is-saml/" target="_blank" rel="noopener"&gt;Security Assertion Markup Language&lt;/A&gt;) was &lt;A href="https://www.cyberark.com/resources/threat-research-blog/golden-saml-newly-discovered-attack-technique-forges-authentication-to-cloud-apps" target="_blank" rel="noopener"&gt;first documented&lt;/A&gt; by CyberArk in 2017. The attack vector, in a nutshell, entails the abuse of the interoperable authentication standard to impersonate almost any identity in an organization.&lt;/P&gt;&lt;P&gt;It's also similar to the &lt;A href="https://www.crowdstrike.com/cybersecurity-101/golden-ticket-attack/" target="_blank" rel="noopener"&gt;Golden Ticket attack&lt;/A&gt; in that it grants attackers the ability to gain unauthorized access to any service in a federation with any privileges and to stay persistent in this environment in a stealthy manner.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://thehackernews.com/2024/02/new-silver-saml-attack-evades-golden.html" target="_blank"&gt;https://thehackernews.com/2024/02/new-silver-saml-attack-evades-golden.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_Cautim&lt;/P&gt;</description>
      <pubDate>Sat, 02 Mar 2024 23:37:30 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Threats/New-Silver-SAML-Attack-Evades-Golden-SAML-Defenses-in-Identity/m-p/67821#M1092</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2024-03-02T23:37:30Z</dc:date>
    </item>
    <item>
      <title>Re: New Silver SAML Attack Evades Golden SAML Defenses in Identity Systems</title>
      <link>https://community.isc2.org/t5/Threats/New-Silver-SAML-Attack-Evades-Golden-SAML-Defenses-in-Identity/m-p/67824#M1095</link>
      <description>&lt;P&gt;Thanks so much for the update&amp;nbsp;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/809125741"&gt;@Caute_cautim&lt;/a&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 03 Mar 2024 01:36:00 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Threats/New-Silver-SAML-Attack-Evades-Golden-SAML-Defenses-in-Identity/m-p/67824#M1095</guid>
      <dc:creator>Kyaw_Myo_Oo</dc:creator>
      <dc:date>2024-03-03T01:36:00Z</dc:date>
    </item>
  </channel>
</rss>

