Testing Oauth2 Implementation Flaws

Use when tests OAuth 2.0 and OpenID Connect implementations for security flaws including authorization code interception, redirect URI manipulation, CSRF in OAuth flows, token leakage, scope escalation, and PKCE bypass. The tester evaluates the authorization server, client application, and token handling for common misconfigurations that enable account takeover or unauthorized access. Use when working with testing oauth2 implementation flaws.

oyi77 1036776 4.1 KB Updated 10 repo stars

File contents

oyi77/1ai-skills/tree/main/cybersecurity/testing-oauth2-implementation-flaws commit 1036776864

Frequently asked questions

npx skillmds add oyi77/testing-oauth2-implementation-flaws