Abstract
OpenID, a standard for Web single sign-on, has been gaining popularity both with Identity Providers, Relying Parties, and users. This paper collects the security issues in OpenID found by others, occasionally extended by the authors, and presents them in a uniform way. It attempts to combine the shattered knowledge into a clear overview. The aim of this paper is to raise awareness about security issues surrounding OpenID and similar standards and help shape opinions on what (not) to expect from OpenID when deployed in a not-so-friendly context. © 2010 IFIP International Federation for Information Processing.
Cite
CITATION STYLE
Van Delft, B., & Oostdijk, M. (2010). A security analysis of OpenID. In IFIP Advances in Information and Communication Technology (Vol. 343 AICT, pp. 73–84). https://doi.org/10.1007/978-3-642-17303-5_6
Register to see more suggestions
Mendeley helps you to discover research relevant for your work.