[Openid-specs-fapi] Issue #843: Browser swapping attacks (openid/fapi)

josephheenan issues-reply at bitbucket.org
Mon Nov 3 21:17:33 UTC 2025


New issue 843: Browser swapping attacks
https://bitbucket.org/openid/fapi/issues/843/browser-swapping-attacks

Joseph Heenan:

A browser swapping attack was presented at IETF 124 today; slides attached.

We should analyse this, but this attacker might not be catered for in the FAPI2 attacker model.




More information about the Openid-specs-fapi mailing list