Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror

Submission + - Truckload of OAuth issues that would make any author quit (blogspot.com) 5

DeFender1031 writes: Several months ago, when Eran Hammer ragequit the OAuth project, many people thought he was simply being overly dramatic, given that he gave only vague indications of what went wrong.

Since then, and despite that, many companies have been switching to OAuth, citing it as a "superior form of secure authentication" but a fresh and objective look at the protocol highlights the significant design flaws in the system and sheds some light on what might have led to its creator's breakdown.

This discussion was created for logged-in users only, but now has been archived. No new comments can be posted.

Truckload of OAuth issues that would make any author quit

Comments Filter:

"Being against torture ought to be sort of a bipartisan thing." -- Karl Lehenbauer

Working...