SaaS Under Siege: Nation-State Actors Target Identities
TL;DR – Like bank robbers and banks, nation-state actors are now targeting SaaS because that’s where the currency is. Plus, now it’s even easier than traditional endpoint compromise. In case you missed it, the Five Eyes (FVEY) intelligence alliance (comprising Australia, Canada, New Zealand, the United Kingdom, and the United ... Read More
Behind the Breach: Pass-The-Cookie Beyond IdPs
Pass-The-Cookie (PTC), also known as token compromise, is a common attack technique employed by threat actors in SaaS environments. In the past, Obsidian’s Threat Research team noted a pattern where most PTC attacks focused on stealing the identity provider (IdP) primary authentication cookie. However, there has since been a shift ... Read More
Unlock SaaS Security Intelligence with Splunk and Obsidian
In a world of evolving SaaS security threats, organizations require advanced threat detection and response capabilities. Obsidian’s integration with Splunk provides just that–empowering security teams to effectively address SaaS security threats. Splunk Integration: What You Need to Know Obsidian offers an application that seamlessly integrates with Splunk Enterprise and Splunk ... Read More

