MLchartDataset catalogue

assertion injection attack

Term · Cybersecurity · MLC-T-CYB-000226

In the context of a federated protocol, consists of an attacker attempting to force an RP to accept or process an assertion or assertion reference in order to gain access to the RP or deny a legitimate subscriber access to the RP. The attacker does this by taking an assertion or assertion reference and injecting it into a vulnerable RP.

Table 1. Record
IdentifierMLC-T-CYB-000226
FieldCybersecurity
ReferencesNIST SP 800-63-4; NIST CSRC Glossary
Record as JSON
{
  "id": "MLC-T-CYB-000226",
  "term": "assertion injection attack",
  "field": "Cybersecurity",
  "definition": "In the context of a federated protocol, consists of an attacker attempting to force an RP to accept or process an assertion or assertion reference in order to gain access to the RP or deny a legitimate subscriber access to the RP. The attacker does this by taking an assertion or assertion reference and injecting it into a vulnerable RP.",
  "references": [
    "NIST SP 800-63-4",
    "NIST CSRC Glossary"
  ],
  "url": "https://mlchart.com/terminology/cybersecurity/assertion-injection-attack/"
}

Record 226 of 4,693 in Cybersecurity terminology (MLC-0102). Request the full dataset.