- Evaluating OAuth 2.0: Authorization Code Grants https://maxfieldchen.com/posts/2020-05-17-penetration-testers-guide-oauth-2.html 8 comments netsec
Linking pages
Linked pages
- Egor Homakov: How I hacked Github again. http://homakov.blogspot.com/2014/02/how-i-hacked-github-again.html 299 comments
- All your Paypal OAuth tokens belong to me - localhost for the win http://blog.intothesymmetry.com/2016/11/all-your-paypal-tokens-belong-to-me.html 35 comments
- Impersonating users by abusing broken “Sign in with” implementations https://www.ory.sh/sign-in-with-user-impersonation-oauth2-openid-connect 19 comments
- [1601.01229] A Comprehensive Formal Security Analysis of OAuth 2.0 https://arxiv.org/abs/1601.01229 7 comments
- Sakurity http://sakurity.com/oauth 1 comment
- Egor Homakov: OAuth2: One access_token To Rule Them All http://homakov.blogspot.com/2012/08/oauth2-one-accesstoken-to-rule-them-all.html 0 comments
- Attacking the OAuth Protocol - Dhaval Kapil https://dhavalkapil.com/blogs/Attacking-the-OAuth-Protocol/ 0 comments
Related searches:
Search whole site: site:maxfieldchen.com
Search title: Maxfield Chen - Penetration Tester's Guide to Evaluating OAuth 2.0 â Authorization Code Grants
See how to search.