An adversary may forge SAML tokens with any permissions claims and lifetimes if they possess a valid SAML token-signing certificate.

Tactics
TA0006

Sub-technique of
T1606


See: MITRE ATT&CK