A story of a $9500 bug in Facebook OAuth 2.0

http://en.wikipedia.org/wiki/Facebook

Andrey Labunets has made a blog posting regarding the OAuth 2.0 flaws he discussed during his talk at HITBSecConf2013 – Amsterdam (PDF).

Read more: A story of a $9500 bug in Facebook OAuth 2.0

Story added 19. April 2013, content source with full text you can find at link above.