← Back to feed
research PortSwigger Research

SAML roulette: the hacker always wins

PortSwigger Research • • GitLab

Introduction In this post, we’ll show precisely how to chain round-trip attacks and namespace confusion to achieve unauthenticated admin access on GitLab Ent...

Read the full story PortSwigger Research →

Related Coverage

research MATCHBOIL: New tricks, same old evil intentions ESET Research · Oct 8 research Introducing AlertZero: Inbox zero for your alert queue Elastic Security Labs · Oct 8 research Japan Adopts Proactive Cyber Defense Strategy Recorded Future · Oct 8