assertion injection attack
Term · Cybersecurity · MLC-T-CYB-000226
In the context of a federated protocol, consists of an attacker attempting to force an RP to accept or process an assertion or assertion reference in order to gain access to the RP or deny a legitimate subscriber access to the RP. The attacker does this by taking an assertion or assertion reference and injecting it into a vulnerable RP.
| Identifier | MLC-T-CYB-000226 |
|---|---|
| Field | Cybersecurity |
| References | NIST SP 800-63-4; NIST CSRC Glossary |
Record as JSON
{
"id": "MLC-T-CYB-000226",
"term": "assertion injection attack",
"field": "Cybersecurity",
"definition": "In the context of a federated protocol, consists of an attacker attempting to force an RP to accept or process an assertion or assertion reference in order to gain access to the RP or deny a legitimate subscriber access to the RP. The attacker does this by taking an assertion or assertion reference and injecting it into a vulnerable RP.",
"references": [
"NIST SP 800-63-4",
"NIST CSRC Glossary"
],
"url": "https://mlchart.com/terminology/cybersecurity/assertion-injection-attack/"
}
Record 226 of 4,693 in Cybersecurity terminology (MLC-0102). Request the full dataset.