all InfoSec news
Salt Labs exposes a new vulnerability in popular OAuth framework, used in hundreds of online services
Security Boulevard securityboulevard.com
This post is the second in a series describing OAuth implementation issues that put companies at risk. We create these posts to share rich technical details, drawn from real-world use cases, to educate the broader industry on the nature of these errors, their potential impact, and how to avoid them to better protect API ecosystems.
This post details issues identified in Expo, a popular framework used by many online services to implement OAuth (as well as other functionality). The vulnerability …
cases companies errors framework implementation industry labs nature oauth online services popular risk salt salt labs series services share technical use cases vulnerability world