RSA response to Fox-IT report and Best Practices for RSA SecurID
Originally Published: 2020-01-14
Article Number
Applies To
CVE Identifier(s)
Article Summary
Resolution
- The adversary must have access to a software token XML file.
- The file must have been created without a password.
Important Statement from RSA Regarding RSA SecurID Software Token Provisioning Best Practices
Disclaimer
Related Articles
Best practices for using Data Access Governance (DAG) in RSA Identity Governance & Lifecycle 63Number of Views RSA SecurID Authentication Engine Security Best Practices Guide (Japanese) 79Number of Views Best practices for RSA Authentication Manager 8.x 388Number of Views RSA SecurID Software Token Security Best Practices Guide for RSA Authentication Manager 8.x 201Number of Views Best Practices to Mitigate Password-Spraying Attacks 348Number of Views
Trending Articles
RSA Authentication Manager 8.9 Release Notes (January 2026) RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide RSA-2026-07: RSA Authentication Manager Security Update for Third-Party Component Vulnerabilities Downloading RSA Authentication Manager license files or RSA Software token seed records RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide
Don't see what you're looking for?