|
main menu
user menu
|
you are not logged in
posts tagged #authentication
-
June 30, 2026
JWT: when the public key becomes the secret
-
February 8, 2026
CSRF: making the victim's browser act
-
December 22, 2025
Password hashing: bcrypt, scrypt, Argon2
-
December 16, 2025
OAuth 2.0: the recurring pitfalls
-
December 10, 2025
SAML attacks: the signature nobody checks properly
-
December 4, 2025
Session fixation: fixing the ID before login
-
November 4, 2025
MFA bypass: where the second factor breaks
-
October 29, 2025
Password reset poisoning: hijacking the link via Host header
-
August 17, 2024
Password spraying and credential stuffing
|
latest posts
your IP address:
216.73.216.108
visitor #1
MOTD:
Every abstraction leaks somewhere. Here we look at where.
|