
Projet final de cybersécurité CS50 — Violation du jeton OAuth de Palo Alto (CVE-2024-3400)
Titre : La brèche OAuth de Salesloft et CVE-2024-3400 (impact Palo Alto)
Auteur : Yafiya Darwesh (GitHub: Yafiah-Darwesh)
Vidéo YouTube : https://youtu.be/CxQNj9qWoZ0?si=cHCwuTIY26YHJ8aw
CVE : CVE-2024-3400
presentation.pdf — diapositivesscript.txt — notes de l'orateurEn bref : Une validation de jeton OAuth mal configurée a permis la falsification de jetons et un accès non autorisé à travers les intégrations OAuth (impactant Palo Alto, Cloudflare, Zscaler, etc.).
(Contact : [email protected])