Version 0.7 Feb. 26, 2025
We released a new schedule version!
We have moved a session around: “From Manual to Marvelous: Improving Security Through Conformance Testing” by Anne Marie Skaar Hasund, Eva Kvalø, Helene Bjørnsen (Feb. 27, 2025, 11 a.m., Ríma → Feb. 28, 2025, 9:30 a.m., Kaldalón).
Version 0.6 Feb. 25, 2025
We released a new schedule version!
We have moved a session around: “OpenID4VC: a road to Final” by Kristina Yasuda (Side room 2 → Ríma)
Version 0.5 Feb. 11, 2025
We released a new schedule version!
We have a new session: “Securing Delegated Workload Identities” by Pieter Kasselman .
Version 0.4 Feb. 3, 2025
We released a new schedule version!
We have new sessions!
- “Client Assertions Gone Wrong: When the Audience Takes Over the Show” by Pedram Hosseyni, Tim Würtele
- “GNAP: A Retrospective” by Justin Richer
- “HTTP Message Signatures (RFC9421)” by Justin Richer
We had to move some sessions, so if you were planning on seeing them, check their new dates or locations:
- “On the Security of Identity Brokers in Single Sign-On” by Louis Jannett, Tommaso Innocenti (Feb. 28, 2025, 11 a.m. → Feb. 26, 2025, 11:30 a.m.)
- “API Security Patterns - Real world patterns used for building token based architectures” by Jacob Ideskog (Feb. 27, 2025, 10 a.m. → Feb. 28, 2025, 11 a.m.)
Version 0.3 Jan. 27, 2025
We released a new schedule version!
We have new sessions!
- “Unconference Sessions”
- “Unconference Sessions”
- “Building the Authentication Layer for OAuth 2.0 for First-Party Applications” by Janak Amarasena
- “OAuth Cross-Device Flow for Enhanced Authorization in Electric Vehicle Charging” by Jonas Primbs
- “OpenID for Verifiable Credentials: Achieving interoperability, security and scalability” by Joseph Heenan
- “Unconference Sessions”
- “From Manual to Marvelous: Improving Security Through Conformance Testing” by Anne Marie Skaar Hasund, Eva Kvalø, Helene Bjørnsen
- “Privacy-Preserving Single Sign-On” by Maximilian Kroschewski, Anja Lehmann
- “On the Security of Identity Brokers in Single Sign-On” by Louis Jannett, Tommaso Innocenti
- “Seamless Native-to-Browser Sessions with Session Tokens” by Fabian Aggeler, Patrick Amrein
- “Welcome Session”
- “Hope Fulfilled, Hype Dispelled: Identity Standards Past, Present, and Future” by Brian Campbell
- “Key Attestations” by Paul Bastian, Christian Bormann
- “How to Enhance Security with Transaction Tokens” by Mert Coskuner, Naveen CM, Naveen CM
- “Unconference Planning Day 2”
- “Call for action - review OAuth- and OIDC-related requirements for OWASP ASVS v5.0” by Elar Lang
- “Unconference Sessions”
- “Unconference Sessions”
- “Conclusion and Final Remarks”
- “Unconference Sessions”
- “OpenID4VC: a road to Final” by Kristina Yasuda
- “Unconference Planning Day 3”
- “eIDs in Europe - A Crash Course” by Dag Sneeggen, Allard Keuter
- “Real-life OpenID Connect for microservices” by Anne Marte Hjemås, Thomas Reppesgård
- “Reaching better access control through OAuth2 clients extensions in JWT profiled tokens and Step-Up Authorization signalling” by Alex Babeanu, Jeff Lombardo
- “Unconference Planning Day 1”
- “How to confirm an OAuth2/OIDC product is secure - a conformance test and vulnerability test” by Takashi Norimatsu
- “The Cambrian Explosion of OAuth and OpenID Specifications” by Michael B. Jones
- “API Security Patterns - Real world patterns used for building token based architectures” by Jacob Ideskog
- “Cross-app OAuth Attacks in Integration Platforms: Mix-up Attacks Reloaded” by Kaixuan Luo
Version 0.2 Sept. 11, 2024
We released a new schedule version!
Version 0.1 Sept. 10, 2024
We released our first schedule!