SAML: Signature Wrapping

Bookmarked!

This exercise covers how to use Signature Wrapping to become an arbitrary user

Course

This course details the exploitation of an insecure SAML implementation that allows a malicious user to become another user by tampering with the SAMLResponse. It teaches the basics of SAML Wrapping attacks and demonstrates how to exploit such vulnerabilities.

Skills covered
Injection Authentication Cryptography
Included with PRO
Full course content 2 videos

Ready to practice?

Get access to this lab and 600+ hands-on exercises with a PRO subscription.