Tag · 213 articles
Security
Auth0 PKCE Implementation: Secure Authorization Code Flow for SPAs
Learn how to implement PKCE in Auth0 for secure authorization code flow in SPAs. Includes code examples and best practices.
Xage Extends Zero Trust to Autonomous AI Agents Across Cloud, SaaS, and Edge
Xage extends zero trust to autonomous AI agents across cloud, SaaS, and edge environments, enhancing security and compliance. Learn how to implement this in your projects.
mTLS vs OAuth 2.0 for Service-to-Service Authentication: A Technical Comparison
Explore the differences between mTLS and OAuth 2.0 for service-to-service authentication. Learn which method is best suited for your needs and how to implement them securely.
OAuth 2.0 Best Practices for 2025: Security, Performance, and Modern Patterns
Learn OAuth 2.0 best practices for 2025, including security, performance, and modern patterns. Get practical tips with code examples.
Zapier Fixes Bug Chain That Researchers Say Risked Widespread Account Takeover
Zapier recently patched a critical bug chain that could lead to widespread account takeover. Learn what happened, who's affected, and how to protect your integrations immediately.
New Zapocalypse Attack Chain Enables Full Zapier Account Takeover
Breaking: New Zapocalypse Attack Chain exposes vulnerabilities in Zapier, enabling full account takeover. Learn how to protect your integrations immediately.
OIDC Authentication Flow: A Visual Guide with Examples
Learn how to implement OpenID Connect authentication flow with visual guides and examples. Get a deep dive into the steps and best practices for secure authentication.
ATLANTIC-ACM Delivers 2026 Global Wholesale Service Provider Excellence Awards
Learn about the 2026 ATLANTIC-ACM Global Wholesale Service Provider Excellence Awards and why they matter for IAM engineers and developers.
Howard Perlow Recognized as the 2026 Service Provider Award Winner
Howard Perlow, a leading IAM expert, has been awarded the 2026 Service Provider Award for his contributions to cloud services and identity management. Learn about his impact and what it means for the IAM community.
From the Hammer to the Scalpel: The Evolution of Account Takeover
Discover how account takeover has evolved from broad attacks to targeted ones, and learn best practices to protect user accounts in today's threat landscape.
Solarisation Service Provider Outreach Toolkit
Discover the Solarisation Service Provider Outreach Toolkit and learn how to secure your interactions with third-party service providers. Protect your organization from unauthorized access and data breaches.
AI-Powered Authentication: How Machine Learning is Transforming Identity Verification
Explore how AI-powered authentication leverages machine learning to transform identity verification, enhancing security and user experience. Get practical insights and best practices.
Fake Party Invitation Phishing Scam Spoofs Google and Microsoft OAuth Logins: FTC Warns
Learn about the latest OAuth phishing scam targeting Google and Microsoft logins. Discover how to protect your applications and users from this threat.
AI Agents in Action: A Playbook for Trusted Adoption, Authorization and Scaling 2026
Discover how AI agents are transforming IAM in 2026, enhancing security, automation, and scalability. Learn best practices for adoption and implementation.
NSA Unveils Interactive Resource Hub for Zero Trust Implementation Guidance
The NSA's new Interactive Resource Hub provides essential guidance for implementing Zero Trust. Learn how to enhance your security posture with real-world examples and best practices.
OAuth Device Code Flow Security: How to Detect and Prevent Device Code Phishing
OAuth device code phishing (RFC 8628 abuse) bypasses MFA and steals M365 refresh tokens without a password. Learn how to disable device authorization grant in Entra ID, Keycloak, Auth0, and detect attacks with SIEM rules.
Oppstar Secures MIDA-backed ARM Access Token for AI Chip Design Project; Shares Rally 10%
Oppstar secures MIDA-backed ARM Access Token for AI chip design, enhancing project security. Learn how to implement best practices immediately.
How Did a Stolen OAuth Token Bypass MFA in the $2M Supply Chain Attack?
Breaking: OAuth token breach affects Salesforce ecosystem. Learn what happened, who's impacted, and how to protect your integrations immediately.
Laravel Supply Chain Attack: Credential Stealer Threatens PHP Applications
Learn about the recent Laravel supply chain attack that injects a credential stealer into PHP applications. Discover how to protect your projects from this threat.