Most people are aware of the recent security issues that SalesForce.com are facing as a result of the successful phishing attacks against them ( more here ). I am expecting that this will be the straw that finally breaks the back of the SaaS market as they come to understand that secure internet SSO via federation is not a ‘nice to have’ but a ‘must have’. One of the attack vectors that make a phishing attack possible is a public web form available on the internet that collects user credentials.
Read More...