[OAUTH-WG] [IANA #1216704] Expert Review for draft-ietf-oauth-iss-auth-resp (oauth-parameters) (2)

2021-12-16 Thread Amanda Baber via RT
Hi Hannes, Have you had a chance to review the OAuth Parameters request in this document? https://datatracker.ietf.org/doc/draft-ietf-oauth-iss-auth-resp/ Is approval from all four experts required? thanks, Amanda Baber IANA Operations Manager On Wed Nov 24 21:28:18 2021, amanda.baber wrote:

[OAUTH-WG] [IANA #1216703] Expert Review for draft-ietf-oauth-iss-auth-resp (oauth-parameters)

2021-12-16 Thread Amanda Baber via RT
Attn: Michael, Nat, John and Dick (OAuth Authorization Server Metadata registry experts) Have you had a chance to review this request? https://datatracker.ietf.org/doc/draft-ietf-oauth-iss-auth-resp/ Is approval from all four experts required? thanks, Amanda Baber IANA Operations Manager On W

[OAUTH-WG] OAuth Redirection Attacks

2021-12-16 Thread Rifaat Shekh-Yusef
All, An article was recently published discussing some OAuth Redirection Attacks to try to bypass phishing detection solutions. See the details of these attacks in the following link: https://www.proofpoint.com/us/blog/cloud-security/microsoft-and-github-oauth-implementation-vulnerabilities-lea

[OAUTH-WG] I-D Action: draft-ietf-oauth-security-topics-19.txt

2021-12-16 Thread internet-drafts
A New Internet-Draft is available from the on-line Internet-Drafts directories. This draft is a work item of the Web Authorization Protocol WG of the IETF. Title : OAuth 2.0 Security Best Current Practice Authors : Torsten Lodderstedt J