⤷ Title: Critical Node-SAML Flaw (CVE-2025-54419, CVSS 10.0) Allows Authentication Bypass in SAML 2.0 Web Apps
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Jul 2025 00:45:30 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #cybersecurity #Node_SAML #Node.js #SAML 2.0 #Single Sign_On #SSO #Vulnerability #web applications
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Jul 2025 00:45:30 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #cybersecurity #Node_SAML #Node.js #SAML 2.0 #Single Sign_On #SSO #Vulnerability #web applications
Daily CyberSecurity
Critical Node-SAML Flaw (CVE-2025-54419, CVSS 10.0) Allows Authentication Bypass in SAML 2.0 Web Apps
A critical vulnerability (CVE-2025-54419, CVSS 10.0) in Node-SAML allows attackers to bypass SAML 2.0 authentication by manipulating unsigned assertion data.
⤷ Title: SUSE Rancher Security Team Patches Three Vulnerabilities in Rancher Manager
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Sep 2025 02:16:49 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2024_58267 #cybersecurity #Denial of Service #Information Leakage #Kubernetes #Rancher Manager #SAML Phishing #security update
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 29 Sep 2025 02:16:49 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2024_58267 #cybersecurity #Denial of Service #Information Leakage #Kubernetes #Rancher Manager #SAML Phishing #security update
Daily CyberSecurity
SUSE Rancher Security Team Patches Three Vulnerabilities in Rancher Manager
SUSE patches three flaws in Rancher Manager. A phishing vulnerability (CVSS 8.1) can steal admin tokens, while a DoS flaw can lock out administrators.
⤷ Title: Authentication Bypass: Mis-scoped SAML Sessions Enable User Impersonation
════════════════════════
𐀪 Author: Abdo Rabea (0xOverlord)
════════════════════════
ⴵ Time: Mon, 06 Oct 2025 09:51:38 GMT
════════════════════════
⌗ Tags: #authentication #saml #bug_bounty_writeup #bug_bounty #authentication_bypass
════════════════════════
𐀪 Author: Abdo Rabea (0xOverlord)
════════════════════════
ⴵ Time: Mon, 06 Oct 2025 09:51:38 GMT
════════════════════════
⌗ Tags: #authentication #saml #bug_bounty_writeup #bug_bounty #authentication_bypass
Medium
Authentication Bypass: Mis-scoped SAML Sessions Enable User Impersonation
at Public Bug Bounty Program
⤷ Title: Jenkins Faces Wave of Plugin Flaws, Including SAML Authentication Bypass (CVE-2025-64131)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 30 Oct 2025 02:08:08 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CI/CD #CVE_2025_64131 #Jenkins #Plugin Vulnerability #SAML #Secret Exposure #Session Hijacking
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 30 Oct 2025 02:08:08 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CI/CD #CVE_2025_64131 #Jenkins #Plugin Vulnerability #SAML #Secret Exposure #Session Hijacking
Daily CyberSecurity
Jenkins Faces Wave of Plugin Flaws, Including SAML Authentication Bypass (CVE-2025-64131)
Jenkins warned of a Critical SAML Plugin flaw (CVE-2025-64131) that allows session replay/hijacking due to a missing cache. Multiple plugins also expose API tokens in plaintext.
⤷ Title: Critical Fortinet Flaw Risks Unauthenticated Admin Bypass via FortiCloud SSO SAML Forgery
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 10 Dec 2025 02:01:25 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Critical Vulnerability #CVE_2025_59718 #FortiCloud #Fortinet #FortiOS #SAML Forgery #SSO Bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 10 Dec 2025 02:01:25 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Critical Vulnerability #CVE_2025_59718 #FortiCloud #Fortinet #FortiOS #SAML Forgery #SSO Bypass
Daily CyberSecurity
Critical Fortinet Flaw Risks Unauthenticated Admin Bypass via FortiCloud SSO SAML Forgery
Fortinet has issued an urgent security advisory following the discovery of a critical vulnerability affecting its flagship network security products. The flaw, which carries a critical CVSS score …
⤷ Title: Critical FortiGate SSO Flaw Under Active Exploitation: Attackers Bypass Auth and Exfiltrate Configs
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 16 Dec 2025 01:58:32 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Active Exploitation #Authentication Bypass #CVE_2025_59718 #FortiCloud #FortiGate #Fortinet #SAML #SSO Bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 16 Dec 2025 01:58:32 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Active Exploitation #Authentication Bypass #CVE_2025_59718 #FortiCloud #FortiGate #Fortinet #SAML #SSO Bypass
Daily CyberSecurity
Critical FortiGate SSO Flaw Under Active Exploitation: Attackers Bypass Auth and Exfiltrate Configs
A critical FortiGate SSO flaw (CVSS 9.1) is under active exploitation, letting unauthenticated attackers bypass login via crafted SAML. The flaw is armed by default registration, risking config exfiltration. Patch immediately.
⤷ Title: The SSO Trap: How a “Default” Feature is Granting Attackers Admin Access to FortiGate Devices
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 02:55:38 +0000
════════════════════════
⌗ Tags: #Vulnerability #Arctic Wolf #authentication bypass #CVE_2025_59718 #CVE_2025_59719 #Cyberattack 2025 #FortiCloud #Fortinet #FortiOS #network security #SAML #SSO
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 02:55:38 +0000
════════════════════════
⌗ Tags: #Vulnerability #Arctic Wolf #authentication bypass #CVE_2025_59718 #CVE_2025_59719 #Cyberattack 2025 #FortiCloud #Fortinet #FortiOS #network security #SAML #SSO
Penetration Testing Tools
The SSO Trap: How a "Default" Feature is Granting Attackers Admin Access to FortiGate Devices
Arctic Wolf reports the first confirmed intrusions into customer networks in which attackers logged into FortiGate devices via
⤷ Title: Forging the Keys: Inside SAMLSmith, the C# Framework for Golden & Silver SAML Attacks
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 24 Dec 2025 03:08:48 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Active Directory #Cybersecurity 2025 #Entra ID #Golden SAML #Identity Security #Pentesting #SAML #SAMLSmith #Silver SAML #XML Forgery
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 24 Dec 2025 03:08:48 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Active Directory #Cybersecurity 2025 #Entra ID #Golden SAML #Identity Security #Pentesting #SAML #SAMLSmith #Silver SAML #XML Forgery
Information Security News
Forging the Keys: Inside SAMLSmith, the C# Framework for Golden & Silver SAML Attacks
SAMLSmith is a C# tool for generating custom SAML responses and implementing Silver SAML and Golden SAML attacks. It provides comprehensive functionality for security researchers and penetration t…
⤷ Title: Surgical Silence: The New Fortinet Zero-Day That Hijacks Firewalls in Seconds
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 03 Feb 2026 04:54:51 +0000
════════════════════════
⌗ Tags: #Vulnerability #Arctic Wolf #authentication bypass #cloud_init@mail.io #CVE_2026_24858 #FortiCloud SSO #FortiGate #Fortinet #SAML exploit #secadmin #zero_day 2026
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 03 Feb 2026 04:54:51 +0000
════════════════════════
⌗ Tags: #Vulnerability #Arctic Wolf #authentication bypass #cloud_init@mail.io #CVE_2026_24858 #FortiCloud SSO #FortiGate #Fortinet #SAML exploit #secadmin #zero_day 2026
Penetration Testing Tools
Surgical Silence: The New Fortinet Zero-Day That Hijacks Firewalls in Seconds
Cybersecurity specialists at Arctic Wolf have identified a nascent wave of incursions targeting Fortinet FortiGate firewalls. Adversaries are
⤷ Title: The New CitrixBleed: Critical CVE-2026-3055 Under Active Attack to Hijack Admin Sessions
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Apr 2026 07:37:15 +0000
════════════════════════
⌗ Tags: #Vulnerability #ADC #Citrix #CitrixBleed #CVE_2026_3055 #Cyber attack 2026 #Gateway #Infosec #NetScaler #SAML #Session Hijacking #vulnerability #WatchTowr
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Apr 2026 07:37:15 +0000
════════════════════════
⌗ Tags: #Vulnerability #ADC #Citrix #CitrixBleed #CVE_2026_3055 #Cyber attack 2026 #Gateway #Infosec #NetScaler #SAML #Session Hijacking #vulnerability #WatchTowr
Penetration Testing Tools
The New CitrixBleed: Critical CVE-2026-3055 Under Active Attack to Hijack Admin Sessions
The architectural frailty within Citrix networking apparatuses, which until recently was characterized merely as a latent peril, is
⤷ Title: Critical 9.8 Webex Flaw Lets Attackers Impersonate Any User
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Apr 2026 01:50:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cisco Control Hub #Cisco Webex #Cloud Security #CVE_2026_20184 #cybersecurity #Identity Management #Impersonation #infosec #Patch Alert #SAML #SSO
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Apr 2026 01:50:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cisco Control Hub #Cisco Webex #Cloud Security #CVE_2026_20184 #cybersecurity #Identity Management #Impersonation #infosec #Patch Alert #SAML #SSO
Daily CyberSecurity
Critical 9.8 Webex Flaw Lets Attackers Impersonate Any User
Cisco Webex CVE-2026-20184 allows unauthenticated user impersonation via SSO flaw. Fix requires a manual certificate update in Control Hub. Act now!
⤷ Title: Sentry’s 9.1 CVSS SSO Flaw Lets Attackers “Link” Their Way Into Your Account
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:45:03 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #2FA #Account Takeover #CVE_2026_42354 #CVSS 9.1 #cybersecurity #Identity Linking #infosec #SAML SSO #Self_Hosted Sentry #sentry #SSO Bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:45:03 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #2FA #Account Takeover #CVE_2026_42354 #CVSS 9.1 #cybersecurity #Identity Linking #infosec #SAML SSO #Self_Hosted Sentry #sentry #SSO Bypass
Daily CyberSecurity
Sentry’s 9.1 CVSS SSO Flaw Lets Attackers "Link" Their Way Into Your Account
Sentry reveals a critical 9.1 CVSS flaw (CVE-2026-42354) in SAML SSO. Multi-org instances are at risk of account takeover via identity linking. Patch now!
⤷ Title: Severe Casdoor Identity Platform Flaws Expose Corporate Networks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 02 Jun 2026 02:02:27 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #Casdoor #CVE_2026_9090 #Identity Management #SAML Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 02 Jun 2026 02:02:27 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #Casdoor #CVE_2026_9090 #Identity Management #SAML Vulnerability
Daily CyberSecurity
Severe Casdoor Identity Platform Flaws Expose Corporate Networks
Critical Casdoor authentication bypass flaws allow cross organization privilege escalation. Learn how to secure your identity infrastructure today.
⤷ Title: The NetScaler Siege: Citrix Infrastructure Faces Mass Exploitation
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 04 Jun 2026 03:39:43 +0000
════════════════════════
⌗ Tags: #Vulnerability #CISA KEV catalog patch #Citrix NetScaler vulnerability #CVE_2026_3055 exploit #FortiGuard threat intelligence #Gateway memory leak #SAML identity provider flaw
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 04 Jun 2026 03:39:43 +0000
════════════════════════
⌗ Tags: #Vulnerability #CISA KEV catalog patch #Citrix NetScaler vulnerability #CVE_2026_3055 exploit #FortiGuard threat intelligence #Gateway memory leak #SAML identity provider flaw
Information Security News
CVE-2026-3055 Exploit: Citrix NetScaler Flaw
Analyze the active CVE-2026-3055 exploit threat. Learn how the Citrix NetScaler memory leak impacts SAML setups and how to fix it.
⤷ Title: Cloud Foundry UAA Vulnerability Enables SAML Authentication Bypass
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 17 Jun 2026 01:33:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #Cloud Foundry #CVE_2026_41005 #PaaS #SAML #UAA
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 17 Jun 2026 01:33:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #Cloud Foundry #CVE_2026_41005 #PaaS #SAML #UAA
Daily CyberSecurity
Cloud Foundry UAA Vulnerability Enables SAML Authentication Bypass
A Cloud Foundry UAA vulnerability (CVE-2026-41005) enables SAML authentication bypass, letting attackers forge trusted assertions. Upgrade now.
⤷ Title: CERT/CC Warns of Six Logto Vulnerabilities in SSO and MFA Handling
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 24 Jul 2026 02:20:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CERT/CC #Identity and Access Management #Logto #MFA Bypass #OAuth 2.1 #OIDC #SAML #Silverhand #SSO
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 24 Jul 2026 02:20:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CERT/CC #Identity and Access Management #Logto #MFA Bypass #OAuth 2.1 #OIDC #SAML #Silverhand #SSO
Daily CyberSecurity
CERT/CC Warns of Six Logto Vulnerabilities in SSO and MFA Handling
TL;DR CERT/CC published vulnerability note VU#492466 on 23 July 2026, covering six flaws in the Logto identity platform. The Logto vulnerabilities let attackers hijack accounts through unverified …
⤷ Title: SolarWinds Web Help Desk SAML Bypass CVE-2026-28323 Scores CVSS 9.8
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 31 Jul 2026 02:53:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2026_28299 #CVE_2026_28323 #SAML authentication bypass #SolarWinds #Web Help Desk
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 31 Jul 2026 02:53:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2026_28299 #CVE_2026_28323 #SAML authentication bypass #SolarWinds #Web Help Desk
Daily CyberSecurity
SolarWinds Web Help Desk SAML Bypass CVE-2026-28323 Scores CVSS 9.8
TL;DR SolarWinds has patched a critical authentication bypass in SolarWinds Web Help Desk. Tracked as CVE-2026-28323, the SAML flaw carries a CVSS score of 9.8. The 2026.2.1 release also fixes a d…
⤷ Title: Citrix NetScaler Pre-Auth RCE CVE-2026-8452 Gets Public Exploit Code
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 17 Aug 2026 03:27:24 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Citrix #CVE_2026_8452 #heap overflow #NetScaler #NetScaler Gateway #Pre_Auth RCE #proof_of_concept #Remote Code Execution #SAML #watchTowr
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 17 Aug 2026 03:27:24 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Citrix #CVE_2026_8452 #heap overflow #NetScaler #NetScaler Gateway #Pre_Auth RCE #proof_of_concept #Remote Code Execution #SAML #watchTowr
Daily CyberSecurity
Citrix NetScaler Pre-Auth RCE CVE-2026-8452 Gets Public Exploit Code
Researchers at watchTowr published a working exploit for a Citrix NetScaler RCE flaw this week. The bug, CVE-2026-8452, lets an unauthenticated attacker run code as root on the appliance. watchTow…
⤷ Title: Pega Platform SAML Authentication Bypass: Critical 9.5 Flaw Patched
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 22 Sep 2026 01:42:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #improper authentication #P26 advisory #Pega #Pega Platform #SAML authentication bypass #SSO #X.509 certificate
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 22 Sep 2026 01:42:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #improper authentication #P26 advisory #Pega #Pega Platform #SAML authentication bypass #SSO #X.509 certificate
Daily CyberSecurity
Pega Platform SAML Authentication Bypass: Critical 9.5 Flaw Patched
TL;DR Pega disclosed a Pega Platform SAML authentication bypass on September 18, 2026. It covers two flaws, one Critical (CVSS 9.5) and one High (CVSS 7.0). Pega has released patches and hotfixes.…