OAuth, WebAuthn, & The Impact of Design Choices - Dan Moore - ASW #260 - podcast episode cover

OAuth, WebAuthn, & The Impact of Design Choices - Dan Moore - ASW #260

Oct 24, 20231 hr 18 min
--:--
--:--
Download Metacast podcast app
Listen to this episode in Metacast mobile app
Don't just listen to podcasts. Learn from them with transcripts, summaries, and chapters for every episode. Skim, search, and bookmark insights. Learn more

Episode description

We return to discussions of OAuth and all sorts of authentication. This time around we're looking at the design of authentication protocols, the kinds of trade-offs they weigh for adoption and security, and how a standard evolves over time to keep pace with new attacks and put to rest old mistakes.

Segment resources:

In the news, appsec lessons from the Okta breach, directory traversal (and appsec) lessons from SolarWinds, how CISOs and Boards rank factors around vulns and patching, revisiting cryptocurrency attacks for lessons in business logic and threat modeling, CISA and friends update guidance on Secure Design, and more!

Visit https://securityweekly.com/asw for all the latest episodes!

Follow us on Twitter: https://www.twitter.com/secweekly

Like us on Facebook: https://www.facebook.com/secweekly

Show Notes: https://securityweekly.com/asw-260

For the best experience, listen in Metacast app for iOS or Android
Open in Metacast
OAuth, WebAuthn, & The Impact of Design Choices - Dan Moore - ASW #260 | Application Security Weekly (Audio) podcast - Listen or read transcript on Metacast