Sony’s Weakest Link Hijack
Sony announced today that a large number of accounts were hijacked using an attack based on the fact that people reuse passwords across websites. These “weakest link hijackings” are an evolution of the phishing attacks that have become so well known over the last few years. These attacks are referred to as “weakest link hijackings” […]
OpenID Connect Specs Incorporating Developer Feedback
Since we posted in July about the availability of preliminary OpenID Connect specifications, developers have been building implementations and submitting feedback on the specs. The specs have been revised to incorporate their feedback. A new map of the specs is as follows: The biggest difference you’ll notice is that there is now only one spec to implement for “Minimal” […]
Current Map for OpenID Connect
There is now a set of functionally complete specifications for OpenID Connect. The diagram below shows the relationships between the current specs and contains links to each of them. These specifications are ready for early developer feedback and prototype implementation work. Please send feedback on them to the OpenID Artifact Binding Working Group Mailing List. […]
Internet Identity System Said Readied by Obama
Internet Identity System Said Readied by Obama Administration 2011-01-07 05:00:01.9 GMT By James Sterngold Jan. 7 (Bloomberg) — The Obama administration plans to announce today plans for an Internet identity system that will limit fraud and streamline online transactions, leading to a surge in Web commerce, officials said. While the White House has spearheaded development […]
OpenID Foundation Retail Summit
by Brian Kissel In Q1 of 2011 PayPal, the OpenID Foundation and Janrain will be facilitating the OpenID Retail Summit hosted by PayPal in Silicon Valley. We are also in discussions with the National Retail Foundation (NRF) about their possible participation. The meeting date is tentatively being scheduled around the NRF Innovate 2011 Conference in San Francisco March […]
Seven sites you didn’t know were using OpenID
The past twenty days have been a real whirlwind in terms of new sites adopting OpenID for sign in. Some of the larger deployments have made the news (Google and Yahoo! Store), but here are seven others you’ve likely not heard about. 7-Eleven Australia Slurpee campaign (http://www.slurpee.com.au/) American Cancer Society (http://www.cancer.org/) Dr. Oz (http://members.doctoroz.com/login) Fylde […]
Authenware Joins OpenID Foundation
Authenware today announced its membership in the OpenID Foundation – an industry organization aimed at protecting identities and intellectual property through the bolstering online security. Through its membership, Authenware becomes part of a community of IT powerhouses that seeks to collectively build awareness of the emerging digital security pandemic. “The exploitation of security vulnerabilities creates […]
theSocialWeb.tv on the launch of the Open Identity Exchange
theSocialWeb.tv visits Citizen Space in San Francisco during the RSA Conference to sit down with Don Thibeau of the OpenID Foundation and Drummond Reed of the Information Card Foundation to discuss the launch of the Open Identity Exchange, the result of a year-long collaboration between the two foundations. John McCrea and Chris Messina dive into […]
NTT docomo is now an OpenID Provider
The largest mobile operator in Japan, NTT docomo, which covers approximately 50% of Japanese population, started offering OpenID authentication on March 9. Every docomo user has an identifier called i-modeID. Using this, users can single sign-on to mobile sites using docomo handsets, making one-click payment and other authenticated actions. These kind of features fueled the […]
Government of Japan started accepting OpenID
Japanese government opened an OpenID Enabled Policy proposal and discussion site.