CyberWire Daily

Everything old is new again.

Dec 22, 2025
Eric Woodruff, Chief Identity Architect at Semperis and expert on identity risks, dives deep into the world of NoAuth abuse and full account takeovers. He reveals how certain apps' reliance on emails as identifiers creates significant vulnerabilities. Eric outlines the alarming findings, showing that 5–9% of tested applications are susceptible to attacks. He provides insights into how attackers exploit this trust to access accounts unnoticed, highlighting the crucial need for improved detection methods and better accountability among SaaS vendors.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

Small Percentage, Large Risk

  • Initial sampling found roughly 5–9% of tested apps vulnerable to NoAuth.
  • Even a small percentage matters given the large number of SaaS apps in use.
INSIGHT

Email Claims Can Impersonate Users

  • NoAuth lets an attacker fake a user by setting an email claim in their own tenant token to match a target's email.
  • The vulnerable app then accepts that token and grants access as if it were the real user.
ADVICE

Ethical Testing With Trial Tenants

  • Test SaaS trial sign-ups from both attacker and legitimate tenants to detect NoAuth vulnerabilities.
  • Use lab trials and dummy data so testing remains ethical and doesn't access real customers' data.
Get the Snipd Podcast app to discover more snips from this episode
Get the app