Resource Hub
A collection of our latest articles, videos, news, and more.
-
Salesforce Community Cloud Scanner
Learn how to secure your Salesforce Community websites from data exposure risks with support from the AO Labs threat research team.
-
Research Brief: A Risk-Based Approach to SaaS Security
Legacy cloud security tools are limited, only providing an ‘outside-in’ view into SaaS. Only SSPM can observe and quantify SaaS security risks.
-
CISO Guide: Assessing SaaS Vendor Security
Discover the differences between SaaS and PaaS, the security risks, how these risks compound in hybrid SaaS/PaaS applications, and how you can…
-
Privileged Identity Management (PIM)
Learn how to ensure the bare minimum of privileged access is granted to the right people, at the right time, and for…
-
Payroll Fraud: Analyzing the Attack Lifecycle of a Direct Deposit Scam
Can you identify signals available in audit logs to detect payroll fraud? Learn how to support threat hunting & detection efforts.
-
Avoid Salesforce Security Vulnerabilities When Building Custom Lightning Components in Apex
Lightning Components offer an unlimited amount of functionality. But security vulnerabilities may be introduced within Apex code exploited by a malicious actor.
-
Salesforce Lightning Components
Get to know the architecture behind Lightning Aura components and learn how a call to an Apex method with parameters.
-
A Technical Analysis and Lessons From The Recent Service Now Misconfiguration Risks
Learn more about the ServiceNow updates to mitigate ACL misconfiguration risks and how to avoid regressing your organization’s data security posture moving…
-
Claiming Zoom Rooms Service Accounts to Gain Access to Zoom Tenants
Learn how Zoom Rooms service accounts could have been misused to gain unauthorized access to Zoom tenants and potentially disclose sensitive information.
-
Admin Account Takeover Leads to Full SSO Compromise During AO Labs Research
Discover how AO Labs achieved read/write access of over 200K users & staff on a leading service provider’s Okta instance.