Catch up on stories from the past week (and beyond) at the Slashdot story archive

 



Forgot your password?
typodupeerror
×
Security Software Upgrades IT

OpenID Warns of Serious Remote Bug, Urges Upgrade 45

Trailrunner7 writes "The OpenID Foundation is warning users about a weakness in the software that could enable an attacker to change some of the data exchanged between parties that use OpenID. The group is telling sites that implement OpenID to update to a new version in order to fix the problem. The bug in OpenID lies in the system's Attribute Exchange, an extension that gives sites the ability to exchange identity information between endpoints. OpenID, an open source project that enables users to prove their identity to myriad sites without providing their passwords, is used by a slew of popular sites, including Google, Yahoo and Flickr."
This discussion has been archived. No new comments can be posted.

OpenID Warns of Serious Remote Bug, Urges Upgrade

Comments Filter:

"I've seen it. It's rubbish." -- Marvin the Paranoid Android

Working...