authentication
- Piecing together the Agent puzzle: MCP, authentication & authorization, and Durable Objects free tier
- GitHub – Splinter0/CrossCheck: A tool to test cross-device authentication protocol security
- AWS adds passkey multi-factor authentication (MFA) for root and IAM users | AWS News Blog
- SAML authentication bypass due to missing validation on unsigned SAML messages ? Advisory ? line/armeria ? GitHub
- DHCC-SA-202106-001:Security Advisory – Identity authentication bypass vulnerability found in some Dahua products – Dahua International
- Passwords and Passwordless Authentication Survey Report
- Delinea Research Finds That Legacy Technology is Hindering the Evolution to Passwordless Authentication in the Workplace
- The evolution of Windows authentication | Windows IT Pro Blog
- Ruby on Rails — Rails 7.1: Dockerfiles, BYO Authentication, More Async Queries, and more!
- Introducing passwordless authentication on GitHub.com | The GitHub Blog
- An update on two-factor authentication using SMS on Twitter
- Passkeys: the future of authentication in 1Password
- CISA Releases Guidance on Phishing-Resistant and Numbers Matching Multifactor Authentication? | CISA
- Basic Authentication Deprecation in Exchange Online – September 2022 Update – Microsoft Tech Community
- We’ve joined the FIDO Alliance to build a better future for authentication | 1Password
- StockX Statement on Authentication Program – StockX
- Cisco Wireless LAN Controller Management Interface Authentication Bypass Vulnerability
- GitHub – nginxinc/nginx-ldap-auth: Example of LDAP authentication using ngx_http_auth_request_module
- Authentication Bypass using Filter Configuration | ManageEngine
- Yubico Launches First YubiKeys With Biometric Authentication – Yubico
- Announcing Access Temporary Authentication
- Fixing the authentication bypass vulnerability affecting REST APIs | ManageEngine ADSelfService Plus
- CISA Adds Single-Factor Authentication to list of Bad Practices | CISA
- Critical Authentication Bypass Vulnerability Patched in Booster for WooCommerce
- CVE-2021-21424: Prevent user enumeration in authentication mechanisms (Symfony Blog)
- It’s Time to Hang Up on Phone Transports for Authentication – Microsoft Tech Community
- Zoom rolls out two-factor video call authentication for all accounts | Engadget
- CVE-2020-2021 PAN-OS: Authentication Bypass in SAML Authentication
- oss-sec: [ADVISORY] SQUID-2020:4 Multiple issues in HTTP Digest authentication
- Cloudflare now supports security keys with Web Authentication (WebAuthn)!
- 総務省|電気通信消費者情報コーナー|送信ドメイン認証技術等の導入に関する法的解釈について (Legal Matters Concering the Sender Authentication ,etc)
- Secure your addons.mozilla.org account with two-factor authentication | Mozilla Add-ons Blog
- (2) Twitter SafetyさんはTwitterを使っています: 「We’re also making it easier to secure your account with Two-Factor Authentication. Starting today, you can enroll in 2FA without a phone number. https://t.co/AxVB4QWFA1」 / Twitter
- NECソリューションイノベータ、セキュリティサービス「RSA Adaptive Authentication」および「RSA FraudAction」を提供開始: プレスリリース | NECソリューションイノベータ
- Google Online Security Blog: Making authentication even easier with FIDO2-based local user verification for Google Accounts
- GitHub supports Web Authentication (WebAuthn) for security keys – The GitHub Blog
- Web Authentication in Firefox for Android | Mozilla Security Blog
- Zero-touch authentication – Ericsson
- Web Authentication: An API for accessing Public Key Credentials Level 1
- W3C、パスワードを不要にする「Web Authentication」(WebAuthn)を勧告として発表。Chrome、Firefox、Androidなど主要ブラウザですでに実装済み - Publickey
- USB_Type-C_Authentication_PR_FINAL.pdf
- USB-IF Launches USB Type-C™ Authentication Program | Business Wire
- Vulnerability Note VU#581311 – TP-Link EAP Controller lacks RMI authentication and is vulnerable to deserialization attacks
- Chromium Blog: Chrome 70 beta: shape detection, web authentication, and more
- Introducing Web Authentication in Microsoft Edge – Microsoft Edge Dev BlogMicrosoft Edge Dev Blog
- Symantec VIP Status – VIP Credential Authentication Service
- Amazon RDSでのIAM multifactor authenticationの利用について | Amazon Web Services ブログ
- CVE-2018-11385: Session Fixation Issue for Guard Authentication (Symfony Blog)
- Firefox 60リリース。大量のパスワードを暗記不要にするWeb Authentication APIに対応 – Engadget 日本版
- FIDO Alliance and W3C Achieve Major Standards Milestone in Global Effort Towards Simpler, Stronger Authentication on the Web
- Web Authentication: An API for accessing Public Key Credentials Level 1
- Amazon Aurora MySQLやAmazon RDS for MySQLへIAM authenticationを利用してSQL Workbench/Jから接続する | Amazon Web Services ブログ
- FIDO Alliance FIDO Alliance and W3C Achieve Major Standards Milestone in Global Effort Towards Simpler, Stronger Authentication on the Web – FIDO Alliance
- Moodle.org: MSA-18-0006: Suspended users with OAuth 2 authentication method can still log in to the site
- Azure MFAサーバーを使用したAmazon WorkSpacesの多要素認証(Multi-Factor Authentication) | Amazon Web Services ブログ
- curl – HTTP authentication leak in redirects
- CVE-2017-3143: An error in TSIG authentication can permit unauthorized dynamic updates | Internet Systems Consortium Knowledge Base
- CVE-2017-3142: An error in TSIG authentication can permit unauthorized zone transfers | Internet Systems Consortium Knowledge Base
- Introducing TLS with Client Authentication
- CVE-2017-5521: Bypassing Authentication on NETGEAR Routers
- ノベル、認証強度を高める多要素認証サーバシステム、「NetIQ Advanced Authentication 5.4」を発表 | Micro Focus
- CVE-2016-4979: HTTPD webserver – X509 Client certificate based authentication can be bypassed when HTTP/2 is used [vs]
- CVE-2015-8289 – Authentication Bypass Using an Alternate Path or Channel | Answer | NETGEAR Support
- Vulnerability Note VU#778696 – Netgear D6000 and D3600 contain hard-coded cryptographic keys and are vulnerable to authentication bypass
- Vulnerability Note VU#267328 – HP Data Protector does not perform authentication and contains an embedded SSL private key
- CVE-2015-3252: Apache CloudStack VNC authentication issue
- Cisco RV220W Management Authentication Bypass Vulnerability
- Back to 28: Grub2 Authentication Bypass 0-Day
- Vulnerability Note VU#361684 – Router devices do not implement sufficient UPnP authentication and security
- Moodle.org: MSA-14-0033: URL parameter injection in CAS authentication
- WordPress.com boosts security for bloggers with two-factor authentication | Naked Security