The Latest in IT Security

“Covert Redirect” OAuth Security Flaw Not as Serious as It Sounds, Experts Say

05
May
2014

Last week, Wang Jing, a Ph.D. student at the Nanyang Technological University in Singapore, reported finding an OAuth and OpenID security flaw that could be exploited to obtain sensitive information.

OAuth is the open standard for authorization used for many high-profile web, desktop and mobile applications. The security issue, which has been dubbed Covert Redirect, can expose all sorts of information.

For OAuth 2.0, these attacks might jeopardize the token&…

Comments are closed.

Categories

SATURDAY, APRIL 27, 2024
WHITE PAPERS

Mission-Critical Broadband – Why Governments Should Partner with Commercial Operators:
Many governments embrace mobile network operator (MNO) networks as ...

ARA at Scale: How to Choose a Solution That Grows With Your Needs:
Application release automation (ARA) tools enable best practices in...

The Multi-Model Database:
Part of the “new normal” where data and cloud applications are ...

Featured

Archives

Latest Comments