#oauth search results

Headless can solve the problem of users authenticating twice in iframes by generating member tokens and injecting session cookies into your website. #OAuth #iframes


Recent #phishing campaigns abuse #OAuth flows to hijack Microsoft accounts. Attackers impersonate major business & investment platforms, tricking users into entering codes or approving access that silently grants account control. Details at bit.ly/4qqtKGE

Unit42_Intel's tweet image. Recent #phishing campaigns abuse #OAuth flows to hijack Microsoft accounts. Attackers impersonate major business & investment platforms, tricking users into entering codes or approving access that silently grants account control. Details at bit.ly/4qqtKGE

🧠 Open Redirect → OAuth Token Theft 1️⃣ App redirects to URLs from untrusted params 2️⃣ Attacker crafts redirect to malicious OAuth callback 3️⃣ Victim approves login → token sent to attacker 4️⃣ Full account compromise 🎯 Open redirect + OAuth = easy takeover #bugbounty #OAuth

NullSecurityX's tweet image. 🧠 Open Redirect → OAuth Token Theft
1️⃣ App redirects to URLs from untrusted params
2️⃣ Attacker crafts redirect to malicious OAuth callback
3️⃣ Victim approves login → token sent to attacker
4️⃣ Full account compromise
🎯 Open redirect + OAuth = easy takeover
#bugbounty #OAuth

🚀 Blocklet Server now supports Twitter OAuth login, adding a new third-party option for user authentication! Log in easily using your Twitter account. #OAuth #Blocklet


If you administer at least one Microsoft 365 tenant, you might find some surprising results if you audit your #OAuth applications 👀 Statistically speaking, there’s a good chance your tenant is infected with a rogue app that could be malicious 😱

HuntressLabs's tweet image. If you administer at least one Microsoft 365 tenant, you might find some surprising results if you audit your #OAuth applications 👀

Statistically speaking, there’s a good chance your tenant is infected with a rogue app that could be malicious 😱

Use a public-facing URL to test an MCP server with actual clients in the cloud. This OAuth flow is secured with Pomerium, and the MCP server knows nothing about OAuth. #MCPserver #OAuth


🔐 New in Faveo Helpdesk → Secure Gmail Authentication with OAuth! ✔ Stronger security ✔ Safer Gmail integration ✔ Seamless support workflows 🚀 #FaveoHelpdesk #HelpdeskSoftware #OAuth #GmailIntegration #Cybersecurity


Today’s suggestion: “Oauth 2.0 Explained With Simple Terms”❗️👩🏻‍💻 Credit: @bytebytego & @sec_r0 🌟🙌🏻 #cybersecurity #infosec #Oauth #auth #authentication #appsec #applicationsecurity #resourcesharing #cheatsheet #learningeveryday

brcyrr's tweet image. Today’s suggestion: “Oauth 2.0 Explained With Simple Terms”❗️👩🏻‍💻

Credit: @bytebytego & @sec_r0 🌟🙌🏻

#cybersecurity #infosec #Oauth #auth #authentication #appsec #applicationsecurity #resourcesharing #cheatsheet #learningeveryday

#oauth #phishing campaign against 🇮🇹 #m365 tenants #BEC offline_access mailread mail.send through GraphAPI *.expressive,com,de/DqaBV/ -> s://5140390597,cyou/helen.php maybe #Flowerstorm @illegalFawn @phishunt_io @PhishKitTracker @ActorExpose @AgidCert @JAMESWT_WT

luc4m's tweet image. #oauth #phishing campaign against 🇮🇹 #m365 tenants #BEC   offline_access mailread mail.send through  GraphAPI  
*.expressive,com,de/DqaBV/ -> s://5140390597,cyou/helen.php

maybe #Flowerstorm

@illegalFawn @phishunt_io  @PhishKitTracker @ActorExpose @AgidCert @JAMESWT_WT
luc4m's tweet image. #oauth #phishing campaign against 🇮🇹 #m365 tenants #BEC   offline_access mailread mail.send through  GraphAPI  
*.expressive,com,de/DqaBV/ -> s://5140390597,cyou/helen.php

maybe #Flowerstorm

@illegalFawn @phishunt_io  @PhishKitTracker @ActorExpose @AgidCert @JAMESWT_WT
luc4m's tweet image. #oauth #phishing campaign against 🇮🇹 #m365 tenants #BEC   offline_access mailread mail.send through  GraphAPI  
*.expressive,com,de/DqaBV/ -> s://5140390597,cyou/helen.php

maybe #Flowerstorm

@illegalFawn @phishunt_io  @PhishKitTracker @ActorExpose @AgidCert @JAMESWT_WT

👩‍🍳 Cooking something #AppsScript #OAuth #GranularScopes... now at 90%. Due tomorrow (hopefully)...

pfelipm's tweet image. 👩‍🍳 Cooking something #AppsScript #OAuth #GranularScopes... now at 90%. Due tomorrow (hopefully)...

#セキュリティ #IT用語 #OAuth #CompTIA #資格取得 / CompTIA Security+ SY0-701出題範囲 IT用語を簡単に説明📝 \ OAuthって何?🧐 聞いたことありますか? もっと学習したい方はこちら👇 tac-school.co.jp/kouza_it/it_cr…

TAC_CompTIA's tweet image. #セキュリティ
#IT用語  #OAuth #CompTIA #資格取得

/
CompTIA Security+ SY0-701出題範囲
IT用語を簡単に説明📝
\

OAuthって何?🧐
聞いたことありますか?

もっと学習したい方はこちら👇
tac-school.co.jp/kouza_it/it_cr…

Why this architecture matters: Single complaint: "Can't log in with Google anymore since yesterday" System extracts: 5 taxonomy layers, 3 entities, 1 temporal marker Routes to: Identity team's #oauth-incidents channel Includes context: 2,847 similar reports, 312% spike from…

systemdesignone's tweet image. Why this architecture matters:

Single complaint: "Can't log in with Google anymore since yesterday"

System extracts: 5 taxonomy layers, 3 entities, 1 temporal marker

Routes to: Identity team's #oauth-incidents channel

Includes context: 2,847 similar reports, 312% spike from…

The biggest risk when building #AI agents? 👀 Hardcoded secrets + painful re-auth flows. Token Vault fixes that: ✅ No secrets in code ✅ Standard #OAuth consent ✅ Auto token refresh Your agents stay powerful. Your users stay safe. 🔗 Learn more: bit.ly/438tT7F

auth0's tweet image. The biggest risk when building #AI agents? 👀

Hardcoded secrets + painful re-auth flows.
Token Vault fixes that:
✅ No secrets in code
✅ Standard #OAuth consent
✅ Auto token refresh

Your agents stay powerful. Your users stay safe.

🔗 Learn more: bit.ly/438tT7F

Tomorrow (September 30) I'll be streaming about #OAuth security, how the standards have changed over time, and new best practices. Come hang out and get comfy with OAuth; it's remote and free! fusionauth.link/evolving-auth


Day 06/100 ✅ (04/08/2025) One more solid day of growth 💪 🔐 Project: Integrated Login with Google (OAuth) 📘 Cohort: Week 9 – Class 1 Completed 🧠 DSA:  • POTD ✔️  • 5 Bit Manipulation Questions – LeetCode & GFG 🔍 Grinding with purpose 🚀 #100DaysOfCode #OAuth #DSA

justinanurag0_2's tweet image. Day 06/100 ✅ (04/08/2025)
One more solid day of growth 💪
🔐 Project: Integrated Login with Google (OAuth)
📘 Cohort: Week 9 – Class 1 Completed
🧠 DSA:
 • POTD ✔️
 • 5 Bit Manipulation Questions – LeetCode & GFG 🔍

Grinding with purpose 🚀
#100DaysOfCode #OAuth #DSA

🚨 New Writeup Alert! 🚨 "The Art of Breaking OAuth: Real-World Exploit and Misuses" by Aenosh Rajora is now live on IW! Check it out here: infosecwriteups.com/c495f5dc94e2 #oauth #cybersecurity #cybersecurityawareness #phishing #owasp


🎯「Cloud App Security (MCAS) はOAuthアプリを自動検知し認可範囲を制限。でも契約の認可範囲は自動化できない。契約認可のスコープ設定は山崎行政書士事務所が徹底支援。」 #CloudAppSecurity #OAuth #E5 #クラウド法務 #山崎行政書士事務所


#MCP and #OAuth are not a good fit - lets push authorization down to the MCP server. More on why + my proposed solution 👇


🔗 OAuth Just Got Smarter! Now supporting: → GitHub OAuth → Linear integration → Custom providers → Automatic token refresh → State-of-the-art encryption Connect your favorite tools securely with plugged.in! #OAuth #APIIntegration #DevTools


🔗 auth-training.reddi.tech Check it out and let me know what you think! Feedback, questions, or access requests welcome 👇 #OAuth #Authentication #WebSecurity #IAM #DevEducation


Googleログイン認証をAngularを使ったWebサイトに組み込む手順を解説します。 プロフィールURLの「フロントエンド」-「Googleログイン認証をWebサイトに組み込む」 参照下さい。 #Googleログイン #OAuth #Angular


Still learning. Still building. But when I finally deploy this thing? Catch me flexing at ShopRite 😎 (Yes, ShopRite still dey, just restructuring like some of our code.) #OAuth #DevLife #WebDev #BuildInPublic

QuadriAdeNelson's tweet image. Still learning. Still building.
But when I finally deploy this thing?

Catch me flexing at ShopRite 😎

(Yes, ShopRite still dey, just restructuring like some of our code.)

#OAuth #DevLife
#WebDev #BuildInPublic

We’re pleased to have supported an academic research project to streamline EV charging authorization. Authlete was deployed to implement an eMSP Authorization Server using #OAuth 2.0/#OpenID Federation, an alternative to the Plug-and-Charge standard. ieeexplore.ieee.org/abstract/docum…


🚨 New Video Drop! Breaking into OAuth 2.0: Real-World Exploits 🎙️ ft. Chahat Mundra (Vulnerability Management @ Infosys) Watch her break down real OAuth vulnerabilities in action! 📺 youtu.be/jM06Ancdpv4 #OAuth #AppSec #CyberSecurity #WomenInTech #SecurityBoat #BugBounty

sb_c0mmunity's tweet image. 🚨 New Video Drop!

Breaking into OAuth 2.0: Real-World Exploits
🎙️ ft. Chahat Mundra (Vulnerability Management @ Infosys)

Watch her break down real OAuth vulnerabilities in action!
📺 youtu.be/jM06Ancdpv4

#OAuth #AppSec #CyberSecurity #WomenInTech #SecurityBoat #BugBounty

トライベックさまの #authlete 採用事例です! "Amazon Cognitoの利用を検討していましたが、UIのカスタマイズ性とOAuth設定の柔軟性に課題がありました" "Auth0は費用対効果の面で採用を正当化できず、Ory Hydraはデータベース運用の負担が大きい点が課題となり、いずれも候補から外れました" #oauth

#トライベック さまに #Authlete をご採用いただきました!Authleteを活用して #OAuth2 サーバー機能を実装、「#Hirameki7」とサードパーティアプリとのシームレスな連携を実現されました。高い開発自由度、運用負荷の軽減、将来の拡張仕様への対応をご評価いただきました。 authlete.com/ja/news-jp/tri…



Glad to see more coverage and education on OAuth app risks and the need for better Entra ID application governance - Thanks for the #AppGovScore inclusion in your analysis @paulschnack! #EntraID #OAuth #CyberSecurity

The Threat Lurking in Your Entra Directory ⚠️ OAuth apps can be the weakest link in your ED. Paul Schnackenburg (@paulschnack) details how breaches at Salesloft/Drift & Commvault exposed hidden risks—& what admins must do now to lock them down. virtualizationreview.com/articles/2025/…



#セキュリティ #IT用語 #OAuth #CompTIA #資格取得 / CompTIA Security+ SY0-701出題範囲 IT用語を簡単に説明📝 \ OAuthって何?🧐 聞いたことありますか? もっと学習したい方はこちら👇 tac-school.co.jp/kouza_it/it_cr…

TAC_CompTIA's tweet image. #セキュリティ
#IT用語  #OAuth #CompTIA #資格取得

/
CompTIA Security+ SY0-701出題範囲
IT用語を簡単に説明📝
\

OAuthって何?🧐
聞いたことありますか?

もっと学習したい方はこちら👇
tac-school.co.jp/kouza_it/it_cr…

Criminals don’t need to be clever all the time; they just follow the easiest path in. Check out @TheHackersNews for how weak points are being abused-including recent research from @Proofpoint on threat actors' use of #OAuth apps. bit.ly/3WyUOpF


先週開催の「OAuth & OpenID Connect 勉強会ー標準仕様による徹底的な API 保護」のアーカイブ動画とスライドを公開しました!#OAuth 最新仕様の実装、 #DPoP の実装をAuthleteで簡素化する方法に興味のある方は、ぜひ、ご覧ください。ご参加ありがとうございました! authlete.com/ja/resources/v… #OIDC


Third-party token compromise is a material risk. If your Salesforce org relies on Connected Apps, this brief is essential reading. We show how to harden OAuth and eliminate single points of failure. arovy.com/resources/blog… #Salesforce #SalesforceSecurity #OAuth


🧠 Security | OAuth Phishing New Device Code Phishing attacks exploit the OAuth device flow —with Google & Azure showing very different attack surfaces ⚠️Huntress Labs to demo live hacks & share defensive tactics. #OAuth #Phishing #Cybersecurity #Google #Azure #Identitysecurity

Strivehawk's tweet image. 🧠 Security | OAuth Phishing
New Device Code Phishing attacks exploit the OAuth device flow —with Google & Azure showing very different attack surfaces ⚠️Huntress Labs to demo live hacks & share defensive tactics.
#OAuth #Phishing #Cybersecurity #Google #Azure #Identitysecurity

#OAuth for #MCP emerging enterprise patterns for #agent_authorization - buff.ly/5dXsO1U

omvapt's tweet image. #OAuth for #MCP emerging enterprise patterns for #agent_authorization - buff.ly/5dXsO1U

The Invisible Backdoor: New research shows privileged dormant service accounts were found in 70%+ of enterprise environments. Your old OAuth tokens are a ticking time bomb. Learn how to find and revoke them instantly. #Cybersecurity #ITSec #OAuth hubs.li/Q03R7--l0

gatlabs.com

OAuth App Security: The Invisible Backdoor in Google Workspace

Close your biggest risk in Google Workspace: OAuth App Security. Learn how dormant apps leave invisible backdoors and how to revoke access automatically.


Power up your #AI #agent in production! ⚡️ Learn how I deployed a secure 'Slides Translator' agent, moving from a notebook to a scalable app using the @googleaidevs ADK, #OAuth, and #Gemini Enterprise. 🤖🔒 Read the guide: fmind.medium.com/powering-up-yo…


A scary Friday, but first... the best #cybersecurity news 🔵 New wave of #phishing attacks uses #OAuth requests to compromise Microsoft accounts telefonicatech.com/en/blog/cyber-…


Un viernes de miedo y... de las mejores noticias sobre #ciberseguridad 🔵 Nueva oleada de #phishing utiliza solicitudes #OAuth para comprometer cuentas Microsoft telefonicatech.com/blog/boletin-c…


Best Practices for working with #OAuth 2.0 ✅🧵🪄

getpostman's tweet image. Best Practices for working with #OAuth 2.0 ✅🧵🪄

What is #OAuth 2.0? Here's what you need to know 👇🧵🛡️

getpostman's tweet image. What is #OAuth 2.0? Here's what you need to know 👇🧵🛡️

FB OAuth Misconfiguration Leads to Takeover any Account #bugbounty #pentesting #oauth #fb sl4x0.medium.com/fb-oauth-misco…

sl4x0's tweet image. FB OAuth Misconfiguration Leads to Takeover any Account
#bugbounty #pentesting #oauth #fb

sl4x0.medium.com/fb-oauth-misco…

🧠 Open Redirect → OAuth Token Theft 1️⃣ App redirects to URLs from untrusted params 2️⃣ Attacker crafts redirect to malicious OAuth callback 3️⃣ Victim approves login → token sent to attacker 4️⃣ Full account compromise 🎯 Open redirect + OAuth = easy takeover #bugbounty #OAuth

NullSecurityX's tweet image. 🧠 Open Redirect → OAuth Token Theft
1️⃣ App redirects to URLs from untrusted params
2️⃣ Attacker crafts redirect to malicious OAuth callback
3️⃣ Victim approves login → token sent to attacker
4️⃣ Full account compromise
🎯 Open redirect + OAuth = easy takeover
#bugbounty #OAuth

Overly simple OAuth types !! #Oauth

sec_r0's tweet image. Overly simple OAuth types !!

#Oauth

If you administer at least one Microsoft 365 tenant, you might find some surprising results if you audit your #OAuth applications 👀 Statistically speaking, there’s a good chance your tenant is infected with a rogue app that could be malicious 😱

HuntressLabs's tweet image. If you administer at least one Microsoft 365 tenant, you might find some surprising results if you audit your #OAuth applications 👀

Statistically speaking, there’s a good chance your tenant is infected with a rogue app that could be malicious 😱

Merci @JulienTopcu maintenant à cause de toi je peux plus voler les commandes Robert Hits du grand hôtel de Budapest 😡 #Lupin #OAuth @bdxio #bdxio23 #bdxio2023

SadEYILI's tweet image. Merci @JulienTopcu maintenant à cause de toi je peux plus voler les commandes Robert Hits du grand hôtel de Budapest 😡 #Lupin 
#OAuth @bdxio #bdxio23 #bdxio2023

mamma mia 🤌🤌 #ATO on #Google One Tab #OAuth deferent from always. Write-up will coming soon. #BugBounty

eulex0x's tweet image. mamma mia 🤌🤌

#ATO on #Google One Tab #OAuth deferent from always.
Write-up will coming soon.
#BugBounty

Despite being central to their security, many orgs struggle to securely implement #OAuth. Our new post walks through common issues & how to prevent them, along with a useful checklist! Read it today & ensure your org is secure: blog.doyensec.com/2025/01/30/oau… #doyensec #security #appsec

Doyensec's tweet image. Despite being central to their security, many orgs struggle to securely implement #OAuth. Our new post walks through common issues & how to prevent them, along with a useful checklist! Read it today & ensure your org is secure: blog.doyensec.com/2025/01/30/oau…

#doyensec #security #appsec

O que é OAuth 2.0 Read the full article: Entendendo a Diferença entre JWT, OAuth e SAML ▸ lttr.ai/ALBAO #Autenticação #JWT #OAuth #SAML

sergiolopessp's tweet image. O que é OAuth 2.0

Read the full article: Entendendo a Diferença entre JWT, OAuth e SAML
▸ lttr.ai/ALBAO

#Autenticação #JWT #OAuth #SAML

OpenID Connect makes it possible to authenticate users using #OAuth 2.0. What are some benefits of working with #openidconnect 🏆 🚀 ? 1. Single Sign-On (SSO) 2. Security 3. Reduced friction 4. Up-to-date information Learn more: blog.postman.com/what-is-openid…

getpostman's tweet image. OpenID Connect makes it possible to authenticate users using #OAuth 2.0. What are some benefits of working with #openidconnect 🏆 🚀 ?

1. Single Sign-On (SSO)
2. Security
3. Reduced friction
4. Up-to-date information

Learn more: blog.postman.com/what-is-openid…

Very high end video conferencing at @secworkshop between @dfett42 , @josephheenan and @__b_c on #oauth client attestation discussion.

Ihalain's tweet image. Very high end video conferencing at @secworkshop between @dfett42 , @josephheenan and @__b_c on #oauth client attestation discussion.

Please Retweet for reach. AIPRM is growing too fast for Google defaults. We need someone at Google to help us to connect more than 10,000 new users/day with their API, we still have default OAuth limit. Do YOU know anyone that could help? #oauth #limit #google #accounts

cemper's tweet image. Please Retweet for reach. 

AIPRM is growing too fast for Google defaults.

We need someone at Google to help us to 
connect more than 10,000 new users/day with their API, we still have default OAuth limit.

Do YOU know anyone that could help?

#oauth #limit #google #accounts

🔐 Curious about #OAuth in PHP? Our #blog dives into how RingCentral’s API helps you set up secure, token-based authentication for your app. medium.com/ringcentral-de…

RingCentralDevs's tweet image. 🔐 Curious about #OAuth in PHP? Our #blog dives into how RingCentral’s API helps you set up secure, token-based authentication for your app. 

medium.com/ringcentral-de…

⚙️ Want to enhance security in your #PHP app? Read our blog to learn how RingCentral’s API supports #OAuth for safe user permissions. medium.com/ringcentral-de…

RingCentralDevs's tweet image. ⚙️ Want to enhance security in your #PHP app? Read our blog to learn how RingCentral’s API supports #OAuth for safe user permissions. 

medium.com/ringcentral-de…

📘 Learn how to implement #OAuth 2.0 authorization for #RingCentralEmbeddable. Our documentation covers everything you need to securely connect your app. ringcentral.github.io/ringcentral-em…

RingCentralDevs's tweet image. 📘 Learn how to implement #OAuth 2.0 authorization for #RingCentralEmbeddable. Our documentation covers everything you need to securely connect your app.  

ringcentral.github.io/ringcentral-em…

🔐 Explore our latest blog post on setting up #OAuth in PHP with RingCentral’s API. Learn how to securely manage user access and #authorization. medium.com/ringcentral-de…

RingCentralDevs's tweet image. 🔐 Explore our latest blog post on setting up #OAuth in PHP with RingCentral’s API. Learn how to securely manage user access and #authorization. 

medium.com/ringcentral-de…

📘 Curious about #OAuth for PHP? Check out our blog to discover how RingCentral’s API helps you implement secure, token-based #authentication in your applications. medium.com/ringcentral-de…

RingCentralDevs's tweet image. 📘 Curious about #OAuth for PHP? Check out our blog to discover how RingCentral’s API helps you implement secure, token-based #authentication in your applications. 

medium.com/ringcentral-de…

Loading...

Something went wrong.


Something went wrong.


United States Trends