Re: [OAUTH-WG] vulnerability in OAuth 2.0/ 1.0/ WRAP leading to DDOS attacks

2010-11-19 Thread Oleg Gryb
.stanford.edu" > To: Oleg Gryb > Cc: Dawn Song ; John Mitchell >; pf...@cs.stanford.edu; Devdatta Akhawe >; oauth@ietf.org; Adam Barth > Sent: Fri, November 19, 2010 4:27:37 AM > Subject: Re: [OAUTH-WG] vulnerability in OAuth 2.0/ 1.0/ WRAP leading to DDOS >attacks >

Re: [OAUTH-WG] vulnerability in OAuth 2.0/ 1.0/ WRAP leading to DDOS attacks

2010-11-19 Thread pflam
ri, November 12, 2010 5:47:35 PM > Subject: Re: [OAUTH-WG] vulnerability in OAuth 2.0/ 1.0/ WRAP leading to DDOS >attacks > Hi, > We are a group of university researchers and have been applying a formal > approach to analyze web security protocols. Devdatta gave a talk at IIW at > Mounta

Re: [OAUTH-WG] vulnerability in OAuth 2.0/ 1.0/ WRAP leading to DDOS attacks

2010-11-17 Thread Oleg Gryb
gt; Subject: Re: [OAUTH-WG] vulnerability in OAuth 2.0/ 1.0/ WRAP leading to DDOS >attacks > > Hi, > > We are a group of university researchers and have been applying a formal > approach to analyze web security protocols. Devdatta gave a talk at IIW at > Mountain View las

Re: [OAUTH-WG] vulnerability in OAuth 2.0/ 1.0/ WRAP leading to DDOS attacks

2010-11-16 Thread pflam
Hi, We are a group of university researchers and have been applying a formal approach to analyze web security protocols. Devdatta gave a talk at IIW at Mountain View last week about our work, and a summary of our earlier results can be found at http://theory.stanford.edu/~jcm/papers/browsermodel-c