THREATOPS
THREAT OPSThreat News › Protecting Tokens and Assertions from Forgery, Theft, and Misuse: Implementation Recommendations for Agencies and Cloud Service Providers

Protecting Tokens and Assertions from Forgery, Theft, and Misuse: Implementation Recommendations for Agencies and Cloud Service Providers

highcisa_advisoriesPublished 2026-09-15

<p>Developed by the National Institute of Standards and Technology (NIST) and CISA, this <a href="https://csrc.nist.gov/pubs/ir/8587/final" target="_blank">interagency report</a> provides federal agencies and cloud service providers with guidelines to protect the identity assertions, access tokens, and cryptographic mechanisms that support modern authentication and authorization. As agencies adopt

Indicators of compromise

Original source: https://www.cisa.gov/resources-tools/resources/protecting-tokens-and-assertions-forgery-theft-and-misuse-implementation-recommendations-agencies