public marks

LINK

Explaining the OAuth Session Fixation Attack

by nhoizey & 1 other
For everyone involved, this was a first-of-a-kind experience: managing a specification security hole (as opposed to a software bug) in an open specification, with an open community, and no clear governance model. Where do you even begin?

Comments

No comment on this link yet.


PUBLIC TAGS
on this link

clevermarks   explication   faille   hack   oAuth   oups   security   sécurité  

BY

nhoizey
the 23/04/2009 at 15:46

krachot
the 23/04/2009 at 10:47