Name:
IETF RFC 7636 PDF
Published Date:
09/01/2015
Status:
[ Active ]
Publisher:
Internet Engineering Task Force
OAuth 2.0 public clients utilizing the Authorization Code Grant are susceptible to the authorization code interception attack. This specification describes the attack as well as a technique to mitigate against the threat through the use of Proof Key for Code Exchange (PKCE, pronounced "pixy").
| Edition : | 15 |
| File Size : | 1 file , 29 KB |
| Number of Pages : | 20 |
| Published : | 09/01/2015 |