The Security Limitations of SSO in OpenID

2008; Institute of Electrical and Electronics Engineers; Linguagem: Inglês

10.1109/icact.2008.4494089

ISSN

1738-9445

Autores

Hyun-Kyung Oh, Seunghun Jin,

Tópico(s)

Web Application Security Vulnerabilities

Resumo

As the Internet becomes a way of social life, there are lots of accounts which a user has to manage. To receive the Web service, people have to register each Web site. It is the OpenID to resolve these burdensome. The OpenID provides the single sign-on service which a user can be authenticated in several Web sites by submitting the password of OpenID to authentication server only once. In this paper, we analyze the single sign-on in OpenID and show an experiment of vulnerability of OpenID.

Referência(s)