Skip to content
Sunday, January 17, 2021
  • Follow me on Twitter
  • Subscribe to Youtube
  • LinkedIn
  • Follow me on Twitter
  • Subscribe to Youtube
  • LinkedIn

.Nat Zone

Digital Identity and Privacy
.Nat Zone
Digital Identity and Privacy
  • About Nat Sakimura
.Nat Zone
Digital Identity and Privacy
  • Follow me on Twitter
  • Subscribe to Youtube
  • LinkedIn

Category: OpenID Connect

Financial API identity OAuth OpenID Connect OpenID Foundation security

APIDays 2016: Financial Grade OAuth & OpenID Connect

Nat December 14, 2016 No Comments APIAPIdaysOpen BankingPSD2

Here is the slide I used in API Days Paris 2016, for the Banking track. Direct link to slideshare: http://www.slideshare.net/nat_sakimura/financial-grade-oauth-openid-connect Hope they are useful.

View More APIDays 2016: Financial Grade OAuth & OpenID Connect
identity OAuth OpenID Connect OpenID Foundation privacy security

FAPI Presentation at Open Data in Finance Conference @ London

Nat June 15, 2016 No Comments #odfFAPIFianncial APIPSD2

Here is the presentation file that I used for my 10 minutes OpenID Foundattion Financial API WG presentation at the Open Data in Finance Conference ( June 15,…

View More FAPI Presentation at Open Data in Finance Conference @ London
Financial API identity OAuth OpenID Connect OpenID Foundation security

Open Data in Finance Conference: Chair’s Welcome

Nat June 15, 2016 No Comments

Here is the script of the Chair’s remark at the opening of the Open Data in Fianance Conference in London (June 15, 2016) 09:00 –…

View More Open Data in Finance Conference: Chair’s Welcome
identity OAuth OpenID Connect

Authorization Delegation: A financial accounts aggregation use case

Nat January 29, 2016 1 Comment

I have many bank accounts. If I wanted to use a new and shiny graphing service, I have to get authorization from each banks individually.…

View More Authorization Delegation: A financial accounts aggregation use case
OAuth OpenID Connect security

Cut and pasted code attack in OAuth 2.0 [RFC6749]

Nat January 25, 2016 6 Comments

The so called ‘cut and pasted code attack’ also known as ‘Frankenstein Monster Attack’ is an attack that the adversary swaps the ‘code’ in the…

View More Cut and pasted code attack in OAuth 2.0 [RFC6749]
identity OAuth OpenID Connect security

Code phishing attack on OAuth 2.0 [RFC6749]

Nat January 22, 2016 9 Comments code phishingmix-upOAuth IdP Mix-up attack

Code phishing attack is the attack that the adversary obtains the code and client credentials from the legitimate client and uses them against the honest token…

View More Code phishing attack on OAuth 2.0 [RFC6749]
OAuth OpenID Connect security

IdP Mix-up Attack on OAuth [RFC6749]

Nat January 15, 2016 1 Comment OAuth IdP Mix-up attack

On Sunday 10, 2016, OAuth Security Advisory: Authorization Server Mix-Up was issued. Nov Matake wrote an excellent article about it in Japanese. To help understand the…

View More IdP Mix-up Attack on OAuth [RFC6749]
identity OAuth OpenID Connect

On the XARA vulnerability on MacOS X and iOS

Nat June 19, 2015 3 Comments securityXARA

Just came across this article: Apple CORED: Boffins reveal password-killer 0-days for iOS and OS X, by The Register. Since the news itself did not explain…

View More On the XARA vulnerability on MacOS X and iOS
OAuth OpenID Connect

Apple’s answer to the in-secure use of in-app browser? — iOS 9 introduces SFSafariViewController

Nat June 9, 2015 No Comments

Apple forcing developpers to use in-app browser instead of spawning Safari has been known as an extremely insecure practice for sometime. There many reasons that…

View More Apple’s answer to the in-secure use of in-app browser? — iOS 9 introduces SFSafariViewController
identity OpenID Connect

Making a Javascript OpenID Connect Client in 4 steps

Nat December 10, 2014 26 Comments

When John, Breno, and I started the OpenID Connect work, one of the target was to make it as simple as putting two files on…

View More Making a Javascript OpenID Connect Client in 4 steps

Posts navigation

Previous page Page 1 Page 2 Page 3 … Page 5 Next page

Categories

Archives

Meta

  • Log in
  • Entries feed
  • Comments feed
  • WordPress.org

Categories

Archives

  • December 2020
  • July 2020
  • June 2020
  • December 2019
  • August 2019
  • May 2019
  • February 2019
  • January 2019
  • December 2018
  • November 2018
  • October 2018
  • September 2018
  • August 2018
  • July 2018
  • May 2018
  • April 2018
  • February 2018
  • December 2017
  • November 2017
  • May 2017
  • December 2016
  • July 2016
  • June 2016
  • May 2016
  • January 2016
  • June 2015
  • May 2015
  • March 2015
  • December 2014
  • November 2014
  • August 2014
  • June 2014
  • May 2014
  • February 2014
  • October 2013
  • August 2013
  • July 2013
  • May 2013
  • March 2013
  • January 2013
  • December 2012
  • November 2012
  • October 2012
  • September 2012
  • August 2012
  • July 2012
  • May 2012
  • April 2012
  • March 2012
  • February 2012
  • January 2012
  • December 2011
  • July 2011
  • June 2011
  • May 2011
  • April 2011
  • March 2011
  • February 2011
  • December 2010
  • November 2010
  • October 2010
  • September 2010
  • July 2010
  • June 2010
  • May 2010
  • April 2010
  • March 2010
  • February 2010
  • January 2010
  • October 2009
  • September 2009
  • August 2009
  • July 2009
  • June 2009
  • May 2009
  • April 2009
  • February 2009
  • December 2008
  • November 2008
  • October 2008
  • September 2008
  • August 2008
  • May 2008
  • March 2008
  • February 2008
  • January 2008
  • November 2007
  • September 2007
  • May 2007
  • October 2006
  • September 2006
  • May 2006
  • April 2006
  • January 2006
  • December 2005
  • Follow me on Twitter
  • Subscribe to Youtube
  • LinkedIn
.Nat Zone | Designed by: Theme Freesia | WordPress | © Copyright All right reserved
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.Ok