SaaS Under Siege: Nation-State Actors Target Identities

SaaS Under Siege: Nation-State Actors Target Identities

TL;DR – Like bank robbers and banks, nation-state actors are now targeting SaaS because that’s where the currency is. Plus, now it’s even easier than traditional endpoint compromise. In case you missed it, the Five Eyes (FVEY) intelligence alliance (comprising Australia, Canada, New Zealand, the United Kingdom, and the United ... Read More
Behind the Breach: Pass-The-Cookie Beyond IdPs

Behind the Breach: Pass-The-Cookie Beyond IdPs

Pass-The-Cookie (PTC), also known as token compromise, is a common attack technique employed by threat actors in SaaS environments.  In the past, Obsidian’s Threat Research team noted a pattern where most PTC attacks focused on stealing the identity provider (IdP) primary authentication cookie. However, there has since been a shift ... Read More

Unlock SaaS Security Intelligence with Splunk and Obsidian

In a world of evolving SaaS security threats, organizations require advanced threat detection and response capabilities. Obsidian’s integration with Splunk provides just that–empowering security teams to effectively address SaaS security threats. Splunk Integration: What You Need to Know Obsidian offers an application that seamlessly integrates with Splunk Enterprise and Splunk ... Read More