Single Sign-On (SSO) attacks

Single Sign-On (SSO) attacks

TL;DR: SAML + OAuth + OIDC trust-chain failures: confused-deputy, audience mismatch, account-linking races.

Stub — to be filled in.

What it is

TODO

Preconditions / where it applies

TODO

Technique

TODO

Detection and defence

TODO

References

  • TODO