3 ms·
where is the "session fixation" / token hijacking attack graphic? The history of 1.0 and the rush to put out OAuth 1.0a I will always remember. The year was 200
by fcpguru 1y ago
where is the "session fixation" / token hijacking attack graphic? The history of 1.0 and the rush to put out OAuth 1.0a I will always remember. The year was 2008 and us yammer engineers implemented this new best practice auth system. It went live. And then suddenly a few days later someone in the office proved how the hijack was possible.
- 7bit 1y agoWhy is that relevant. We are at OAuth 2.0. who cares about what's been 17 years ago?
- brabel 1y ago2.1 is just around the corner.
- ted_dunning 1y agoAnd 2008 is still 17 years ago.
- brabel 1y agoWhat??
- fcpguru 1y agoi guess it's not. just past trama. I had to talked about it. Better now.