
ISC StormCast for Wednesday, January 3rd, 2024
SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)
00:00
Exposing Vulnerabilities in Google Authentication
This chapter explores a serious security issue in Google's authentication system, emphasizing an undocumented OAuth 2.0 feature related to Chrome's multi-login. It discusses how attackers can leverage persistent cookies to maintain access to user sessions, even after users attempt to log out or change their passwords.
Transcript
Play full episode