Navigation
Recherche
|
Almost half of enterprise apps don't handle credentials securely
mardi 27 mai 2025, 15:11 , par BetaNews
A new report from Orchid Security shows nearly half of enterprise applications violate basic credential-handling guidance, with 44 percent undermining centralized identity provider (IdP) policies and 40 percent falling short of widely accepted identity-control standards. Orchid analyzed authentication flows and authorization practices embedded deep within enterprise applications and finds clear-text credentials in nearly half. These are normally associated with alternative access flows, often for non-human accounts, but they also present an easy target for threat actors seeking entry or lateral movement. While IdPs are very common within enterprises and a valuable tool to centralize secure authentication practices, the research finds… [Continue Reading]
https://betanews.com/2025/05/27/almost-half-of-enterprise-apps-dont-handle-credentials-securely/
Voir aussi |
56 sources (32 en français)
Date Actuelle
sam. 31 mai - 13:50 CEST
|