Later archive addition
Bypassing GitHub's OAuth flow
The article explains an OAuth authorization bypass caused by Rails routing HEAD requests like GET while GitHub’s controller treated every non-GET request as an authorization POST. Because HEAD was exempt from CSRF validation, an attacker could issue a cross-site authenticated request that silently granted an OAuth application access to a victim’s GitHub account.
Record
- Published by
- Teddy Katz’s Blog
- Date
In the archive
Tags
This page is the archive's own catalogue record. The research is the work of Teddy Katz’s Blog, first published at the original source. Preserved copies are kept so the citation survives its host.