[Openid-specs-ab] Issue #1010: Create a Threat Document about the Misuse of OAuth (openid/connect)

sakimura at gmail.com sakimura at gmail.com
Tue Mar 7 02:53:26 UTC 2017


Thanks. Just updated.

Nat

On 2017-03-07 11:36, rich levinson via Openid-specs-ab wrote:
> Hi All,
> 
> Correction on the "article prompting discussion" link: it should be:
> 
> https://www.blackhat.com/docs/eu-16/materials/eu-16-Yang-Signing-Into-Billion-Mobile-Apps-Effortlessly-With-OAuth20-wp.pdf
> 
> note the "-wp" on the end. This is to the research paper, other link
> is to ppt pres in pdf form.
> 
>   Thanks,
>   Rich
> 
> 
> On 3/6/2017 8:44 PM, Nat Sakimura via Openid-specs-ab wrote:
>> New issue 1010: Create a Threat Document about the Misuse of OAuth
>> https://bitbucket.org/openid/connect/issues/1010/create-a-threat-document-about-the-misuse
>> 
>> Nat Sakimura:
>> 
>> The article that prompted this discussion is 
>> https://www.blackhat.com/docs/eu-16/materials/eu-16-Yang-Signing-Into-Billion-Mobile-Apps-Effortlessly-With-OAuth20.pdf
>> 
>> Collect a summary of our discussions from December and January and see 
>> if it can be assigned to someone.
>> 
>> Responsible: Nat
>> _______________________________________________
>> Openid-specs-ab mailing list
>> Openid-specs-ab at lists.openid.net
>> http://lists.openid.net/mailman/listinfo/openid-specs-ab
> 
> _______________________________________________
> Openid-specs-ab mailing list
> Openid-specs-ab at lists.openid.net
> http://lists.openid.net/mailman/listinfo/openid-specs-ab



More information about the Openid-specs-ab mailing list