OAuth 2.0 from Protecting APIs to Supporting Authorization & Authentication - Aaron Pa... - ASW
Security Weekly - A CRA Resource Security Weekly - A CRA Resource
43.7K subscribers
206 views
5

 Published On Jun 25, 2024

OAuth 2.0 is more than just a single spec and it's used to protect more than just APIs. We talk about challenges in maintaining a spec over a decade of changing technologies and new threat models. Not only can OAuth be challenging to secure by default, but it's not even always inter-operable.

Segment Resources:

https://oauth.net/2.1
https://oauth.net/specs/
https://oauth2simplified.com/
https://oauth.net/2/dpop/
https://oauth.net/2/oauth-best-practice/
https://oauth.net/fapi/
https://developer.mozilla.org/en-US/d...

Visit https://www.securityweekly.com/asw for all the latest episodes!

Show Notes: https://securityweekly.com/asw-289

show more

Share/Embed