Enhancing security in OpenID connect Single Sign-On (SSO) systems: a comprehensive vulnerability analysis and mitigation approach
Mohammed Abdulhammed Al-Shabi, Akram Bennour, Mohammed Al-Sarem, Osamah Ibrahim Khalaf, Ratul Sikder, Sameer Saadoon Algburi · IET conference proceedings. · 2024
Single Sign-On (SSO) systems have become popular for simplifying the login process by allowing users to authenticate with a single identity provider (IDP). However, the widespread use of these systems raises concerns about user privacy, as IDPs like Google or Facebook can gather extensive information about user behavior on the web. This poses a significant challenge for privacy-conscious users who wish to limit the disclosure of their web access behavior to third-party organizations.