TLDR This post shows how to achieve a full authentication bypass in the Ruby and PHP SAML ecosystem by exploiting several parser-level inconsistencies: including attribute pollution, namespace confusi
---
来源: PortSwigger
原文链接: https://portswigger.net/research/the-fragile-lock
The Fragile Lock: Novel Bypasses For SAML Authentication
12 浏览
0 回复
暂无回复,快来抢沙发吧!