Cybersecurity

FusionAuth Snags $65 Million Investment for Customer Identity Tech

Customer authentication and authorization company FusionAuth on Wednesday announced that it has scored a $65 million investment from Updata Partners, it first external funding to date. Founded in 2018, the Denver startup provides developers with a customer identity platform that allows them to add registration, login, and user management features to their software. The product […]

Cybersecurity

Critical OAuth Flaws Uncovered in Grammarly, Vidio, and Bukalapak Platforms

Oct 25, 2023Newsroom Critical security flaws have been disclosed in the Open Authorization (OAuth) implementation of popular online services such as Grammarly, Vidio, and Bukalapak, building upon previous shortcomings uncovered in Booking[.]com and Expo. The weaknesses, now addressed by the respective companies following responsible disclosure between February and April 2023, could have allowed malicious actors […]

Cybersecurity

‘Log in with…’ Feature Allows Full Online Account Takeover for Millions

Flaws in the implementation of the Open Authorization (OAuth) standard across three prominent online services could have allowed attackers to take over hundreds of millions of user accounts on dozens of websites, exposing people to credential theft, financial fraud, and other cybercriminal activity.  Researchers from Salt Labs discovered critical API misconfigurations on the sites of […]