Kayssel - Offensive Security Blog · Jun 14, 2026
SAML SSO Exploitation: Breaking the Trust Chain
0Sign in to vote or save
This site does not allow itself to be embedded. You can still read it on the original site — the toolbar below keeps your place in the directory.
XML signature wrapping variants, void canonicalization bypass, NameID comment injection, SAML attribute injection, and token replay against enterprise SSO
Comments
Nothing yet. Say the first thing.
Sign in to join the conversation.