[Cryptography] "Covert Redirect" vulnerability in OAuth, OpenID

Jerry Leichter leichter at lrw.com
Fri May 2 17:58:58 EDT 2014


Anyone looked at the details on this one?

http://www.cnet.com/news/serious-security-flaw-in-oauth-and-openid-discovered/

                                                        -- Jerry

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4813 bytes
Desc: not available
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20140502/f21d667c/attachment.bin>


More information about the cryptography mailing list