Advertisement
Top

Tag: SSO


Threats & Malware, Vulnerabilities

Patch time: Critical GitLab vulnerability exposes 2FA-less users to account takeovers

January 16, 2024

Via: The Register

GitLab admins should apply the latest batch of security patches pronto given the new critical account-bypass vulnerability just disclosed. Tracked as CVE-2023-7028, the maximum-severity bug exploits a change introduced in version 16.1.0 back in May 2023 that allowed users to […]


Access control, Security

CISA and NSA Issue Recommendations for Secure IAM

October 9, 2023

Via: SecureWorld

In the ever-evolving landscape of cybersecurity, protecting sensitive data and ensuring secure access to digital assets have become paramount concerns for organizations worldwide. Recognizing the significance of these challenges, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) and the National […]


Access control, Security

Account pre-hijacking attacks possible on many online services

May 24, 2022

Via: Help Net Security

Online accounts getting hijacked and misused is an everyday occurrence, but did you know that account pre-hijacking attacks are also possible? Inspired by previous research on preemptive account hijacking by way of single sign-on (SSO) technology, researchers Avinash Sudhodanan and […]


Access control, Security

Organizations failing to give users the login experience they want

October 15, 2021

Via: Help Net Security

Companies often claim to be customer-centric, or even customer-obsessed, striving to offer technologies that their users demand. However, the findings of a recent global Auth0 survey suggest that organizations worldwide continue to miss the mark when it comes to giving […]


Cyber-crime, Phishing

Phishing attacks increase in H1 2021, sharp jump in crypto attacks

August 19, 2021

Via: Help Net Security

Overall, the first half of 2021 shows a 22 percent increase in the volume of phishing attacks over the same time period last year, PhishLabs reveals. Notably, however, phishing volume in June dipped dramatically for the first time in six […]


Mobile, Privacy protection

New privacy-preserving SSO algorithm hides user info from third parties

June 30, 2020

Via: Help Net Security

Over the last few decades, as the information era has matured, it has shaped the world of cryptography and made it a varied landscape. Amongst the myriad of encoding methods and cryptosystems currently available for ensuring secure data transfers and […]


Vulnerabilities

The perils of single sign-on

October 5, 2015

Via: vulnerabilities

My company, like most, has been letting go of on-premise corporate applications in favor of #cloud-based alternatives for quite a while now. Still, it wasn’t until last week that it really came home to me how thoroughly committed to the […]