Avatar ๐Ÿ”

Brennenstuhl on Security

Exploring usable security & website authentication with a foible for data breaches, account security and pass{keys, codes, words}.

  1. Home
  2. About me
  3. Knowledge Base
  4. Search
  5. Archives
  6. Disclaimer
    1. Dark Mode

Categories

Identity & Access Management Software Engineering Application Security Ethical Hacking Software Security

Tags

JWT OSS Password Security OIDC OAuth 2.0 SRE UX Security AWS Defensive Security Git
Featured image of post Striking the Perfect Balance: How to Design a Strong Password Policy That's User-Friendly & Effective
Identity & Access Management

Striking the Perfect Balance: How to Design a Strong Password Policy That's User-Friendly & Effective

Account Security โžข Learn how to create a secure and user-friendly password policy that strikes the perfect balance between web security and user experience

26. Apr 2023
10 minute read
Featured image of post How to Make Your Login Forms Password-Manager Friendly
Identity & Access Management

How to Make Your Login Forms Password-Manager Friendly

Password Security | Use HTML features to create password-manager friendly login forms for a seamless user experience & enhanced web security

23. Apr 2023
6 minute read
Featured image of post Learning AssertJ: Null ain't Blank
Software Engineering

Learning AssertJ: Null ain't Blank

This AssertJ bug could lead to severe issues: In Java, a blank String is a CharSequence that is empty, null or whitespace only โ€“ except when you use AssertJ!

05. Sep 2017
2 minute read
Featured image of post The Purpose of JWT: Stateless Authentication
Identity & Access Management

The Purpose of JWT: Stateless Authentication

Establish stateless authentication with JWT. Uncover fundamental ideas of JSON Web Token, security concepts & commonpitfalls to avoid in this concise guide.

28. Apr 2017
8 minute read
Featured image of post On Making Spring Security OAuth RFC-compliant
Application Security

On Making Spring Security OAuth RFC-compliant

Open-Source Contribution | I fixed a small HTTP header extractor in Spring Security OAuth. Here's what happened & what I learned.

01. Feb 2017
4 minute read
1 … 3 4 5 6
Brennenstuhl on Security
Made and hosted in the EU ๐Ÿ‡ช๐Ÿ‡บ ยท Powered by Hugo & Stack
Imprint ยท Privacy