githubEdit

OAUTH Misconfigurations

Resources

  1. OAuth2.0 Protocol Code Flow with PKCE Explained in Arabic: https://www.youtube.com/watch?v=_NNPKyAlaIwarrow-up-right

  2. Modern Guide - What is OAuth 2.0 and How Does It Work: https://fusionauth.io/articles/oauth/modern-guide-to-oautharrow-up-right

  3. YouTubearrow-up-right: OAuth2.0 Protocol Code Flow with PKCE Explained | oauth2.0 شرح

Mind map

https://pbs.twimg.com/media/EZ1WqmcXYAAqwSH?format=jpg&name=900x900

Top OAuth reports from HackerOne:

  1. Stealing Users OAUTH Tokens via redirect_uri arrow-up-rightto BOHEMIA INTERACTIVE a.s. - 38 upvotes, $0

  2. Race Conditions in OAuth 2 API implementationsarrow-up-right to Internet Bug Bounty - 37 upvotes, $0

Last updated

Was this helpful?