All topics

Authorization

32 articles tagged Authorization.

OAuth 2.1: How OAuth 2.0 Evolved into a More Secure Authorization Framework

  • Authorization
  • Identity & Access Management
  • OAuth2

Disclaimer: This article was written in Q3,2026. It is current as of that date. The OAuth 2.1 draft proposals have not yet been published as an RFC. So, some changes could still occur. Given the late stage of the process, it is unlikely it will change that much, but be aware that some changes could…

Read article: OAuth 2.1: How OAuth 2.0 Evolved into a More Secure Authorization Framework

Understanding Unauthenticated Traffic: How Applications and APIs Represent The Unauthenticated User

  • Application Security
  • Authentication
  • Authorization

Authentication is one of the most fundamental concepts in application security. Most developers spend considerable time designing how authenticated users are represented, authorized, and managed. Surprisingly, much less attention is given to the opposite state of users who have not authenticated at…

Read article: Understanding Unauthenticated Traffic: How Applications and APIs Represent The Unauthenticated User

Data Loss Prevention (DLP): Keeping Your Organization’s Secrets from Walking Out the Door

  • Authorization
  • Data Security
  • Data Loss Prevention

For decades, organizations have focused on keeping attackers out. Firewalls, antivirus software, intrusion detection systems, IAM solutions, and the like all serve a common purpose to prevent unauthorized access. However, many security incidents do not begin with an external attacker breaking in.…

Read article: Data Loss Prevention (DLP): Keeping Your Organization’s Secrets from Walking Out the Door