Matches in SemOpenAlex for { <https://semopenalex.org/work/W2989417880> ?p ?o ?g. }
Showing items 1 to 69 of
69
with 100 items per page.
- W2989417880 abstract "Millions of users routinely use Google to log in to websites supporting the standardised protocols OAuth 2.0 or OpenID Connect; the security of OAuth 2.0 and OpenID Connect is therefore of critical importance. As revealed in previous studies, in practice RPs often implement OAuth 2.0 incorrectly, and so many real-world OAuth 2.0 and OpenID Connect systems are vulnerable to attack. However, users of such flawed systems are typically unaware of these issues, and so are at risk of attacks which could result in unauthorised access to the victim user's account at an RP. In order to address this threat, we have developed OAuthGuard, an OAuth 2.0 and OpenID Connect vulnerability scanner and protector, that works with RPs using Google OAuth 2.0 and OpenID Connect services. It protects user security and privacy even when RPs do not implement OAuth 2.0 or OpenID Connect correctly. We used OAuthGuard to survey the 1000 top-ranked websites supporting Google sign-in for the possible presence of five OAuth 2.0 or OpenID Connect security and privacy vulnerabilities, of which one has not previously been described in the literature. Of the 137 sites in our study that employ Google Sign-in, 69 were found to suffer from at least one serious vulnerability. OAuthGuard was able to protect user security and privacy for 56 of these 69 RPs, and for the other 13 was able to warn users that they were using an insecure implementation." @default.
- W2989417880 created "2019-11-22" @default.
- W2989417880 creator A5000267802 @default.
- W2989417880 creator A5015676987 @default.
- W2989417880 creator A5063477888 @default.
- W2989417880 date "2019-11-11" @default.
- W2989417880 modified "2023-10-16" @default.
- W2989417880 title "OAuthGuard" @default.
- W2989417880 cites W2012921353 @default.
- W2989417880 cites W2072978486 @default.
- W2989417880 cites W2073828651 @default.
- W2989417880 cites W2089775132 @default.
- W2989417880 cites W2103475742 @default.
- W2989417880 cites W2112995928 @default.
- W2989417880 cites W2133723082 @default.
- W2989417880 cites W2229250518 @default.
- W2989417880 cites W2400427673 @default.
- W2989417880 cites W2553945548 @default.
- W2989417880 cites W2899106578 @default.
- W2989417880 cites W3049379989 @default.
- W2989417880 doi "https://doi.org/10.1145/3338500.3360331" @default.
- W2989417880 hasPublicationYear "2019" @default.
- W2989417880 type Work @default.
- W2989417880 sameAs 2989417880 @default.
- W2989417880 citedByCount "13" @default.
- W2989417880 countsByYear W29894178802019 @default.
- W2989417880 countsByYear W29894178802020 @default.
- W2989417880 countsByYear W29894178802021 @default.
- W2989417880 countsByYear W29894178802022 @default.
- W2989417880 countsByYear W29894178802023 @default.
- W2989417880 crossrefType "proceedings-article" @default.
- W2989417880 hasAuthorship W2989417880A5000267802 @default.
- W2989417880 hasAuthorship W2989417880A5015676987 @default.
- W2989417880 hasAuthorship W2989417880A5063477888 @default.
- W2989417880 hasBestOaLocation W29894178802 @default.
- W2989417880 hasConcept C108827166 @default.
- W2989417880 hasConcept C113324615 @default.
- W2989417880 hasConcept C136764020 @default.
- W2989417880 hasConcept C148417208 @default.
- W2989417880 hasConcept C2776362682 @default.
- W2989417880 hasConcept C38652104 @default.
- W2989417880 hasConcept C41008148 @default.
- W2989417880 hasConcept C95713431 @default.
- W2989417880 hasConceptScore W2989417880C108827166 @default.
- W2989417880 hasConceptScore W2989417880C113324615 @default.
- W2989417880 hasConceptScore W2989417880C136764020 @default.
- W2989417880 hasConceptScore W2989417880C148417208 @default.
- W2989417880 hasConceptScore W2989417880C2776362682 @default.
- W2989417880 hasConceptScore W2989417880C38652104 @default.
- W2989417880 hasConceptScore W2989417880C41008148 @default.
- W2989417880 hasConceptScore W2989417880C95713431 @default.
- W2989417880 hasLocation W29894178801 @default.
- W2989417880 hasLocation W29894178802 @default.
- W2989417880 hasOpenAccess W2989417880 @default.
- W2989417880 hasPrimaryLocation W29894178801 @default.
- W2989417880 hasRelatedWork W1481480818 @default.
- W2989417880 hasRelatedWork W1963828660 @default.
- W2989417880 hasRelatedWork W2086663091 @default.
- W2989417880 hasRelatedWork W2748952813 @default.
- W2989417880 hasRelatedWork W3004396660 @default.
- W2989417880 hasRelatedWork W3079032918 @default.
- W2989417880 hasRelatedWork W3133110380 @default.
- W2989417880 hasRelatedWork W3204526087 @default.
- W2989417880 hasRelatedWork W3211475103 @default.
- W2989417880 hasRelatedWork W73621482 @default.
- W2989417880 isParatext "false" @default.
- W2989417880 isRetracted "false" @default.
- W2989417880 magId "2989417880" @default.
- W2989417880 workType "article" @default.