Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Regarding OAuth2 it should be noted that one person quit the OAuth2 board/spec in disgust saying how lame and insecure the whole thing was.

And nobody listened to him. And he was right.

Some things are too complex to ever be secure and OAuth2 seems to be one of these things.



> one person

The lead author and editor, Eran Hammer.

http://hueniverse.com/2012/07/oauth-2-0-and-the-road-to-hell...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: