Abstract. OpenID, a standard for Web single sign-on, has been gaining popularity both with Identity Providers, Relying Parties, and users. This paper collects the security issues in OpenID found by others, occasionally extended by the authors, and presents them in a uniform way. It attempts to combine the shattered knowledge into a clear overview. The aim of this paper is to raise awareness about security issues surrounding OpenID and similar standards and help shape opinions on what (not) to expect from OpenID when deployed in a not-so-friendly context.
Today, there is an increasing demand for authentication services to provide authentication to users ...
OpenID is a widely used single sign-on standard that allows users to access different services using...
It is increasingly difficult to manage the user identities (IDs) of rapidly developing and numerous ...
International audienceOpenID, a standard for Web single sign-on, has been gaining popularity both wi...
OpenID 2.0 is a user-centric Web single sign-on protocol with over one billion OpenID-enabled user a...
Abstract — This paper studies the privacy risks for the users of the OpenID Single Sign-On (SSO) mec...
OpenID is an open and promising Web single sign-on solution; however, the interaction flows provided...
Single Sign-On (SSO) is a solution where the authentication process is taken care of once by a third...
OpenID is a promising user-centric Web single sign-on protocol. According to the OpenID Foundation, ...
This paper studies the privacy risks for the users of two popular single sign-on platforms for web-b...
The web is essential for business and personal activities well beyond information retrieval, such on...
Abstract. Single Sign-On (SSO) systems simplify login procedures by using an an Identity Provider (I...
OpenID is an open and promising Web single sign-on (SSO) solution. This work investigates the challe...
OpenID and OAuth are open and lightweight web single sign-on (SSO) protocols that have been adopted ...
OpenID and OAuth are open and lightweight web single sign-on (SSO) protocols that have been adopted ...
Today, there is an increasing demand for authentication services to provide authentication to users ...
OpenID is a widely used single sign-on standard that allows users to access different services using...
It is increasingly difficult to manage the user identities (IDs) of rapidly developing and numerous ...
International audienceOpenID, a standard for Web single sign-on, has been gaining popularity both wi...
OpenID 2.0 is a user-centric Web single sign-on protocol with over one billion OpenID-enabled user a...
Abstract — This paper studies the privacy risks for the users of the OpenID Single Sign-On (SSO) mec...
OpenID is an open and promising Web single sign-on solution; however, the interaction flows provided...
Single Sign-On (SSO) is a solution where the authentication process is taken care of once by a third...
OpenID is a promising user-centric Web single sign-on protocol. According to the OpenID Foundation, ...
This paper studies the privacy risks for the users of two popular single sign-on platforms for web-b...
The web is essential for business and personal activities well beyond information retrieval, such on...
Abstract. Single Sign-On (SSO) systems simplify login procedures by using an an Identity Provider (I...
OpenID is an open and promising Web single sign-on (SSO) solution. This work investigates the challe...
OpenID and OAuth are open and lightweight web single sign-on (SSO) protocols that have been adopted ...
OpenID and OAuth are open and lightweight web single sign-on (SSO) protocols that have been adopted ...
Today, there is an increasing demand for authentication services to provide authentication to users ...
OpenID is a widely used single sign-on standard that allows users to access different services using...
It is increasingly difficult to manage the user identities (IDs) of rapidly developing and numerous ...