Flutterby™! : Abandoned OAuth

Next unread comment / Catchup all unread comments User Account Info | Logout | XML/Pilot/etc versions | Long version (with comments) | Weblog archives | Site Map | | Browse Topics

Abandoned OAuth

2025-01-18 18:52:43.890862+01 by Dan Lyke 2 comments

Careful about your abandoned domains (as in startups that were using SAAS HR tools) Millions of Accounts Vulnerable due to Google’s OAuth Flaw

[ related topics: Weblogs ]

comments in ascending chronological order (reverse):

#Comment Re: Abandoned OAuth made: 2025-01-25 17:38:58.63816+01 by: Definitely Not a Bot

If I never use the "log in here using your Google account" am I safe from that?

#Comment Re: Abandoned OAuth made: 2025-01-25 17:38:58.63816+01 by: Dan Lyke

Yes. This is about abandoned domains and services which may persist after those domains are abandoned.