#CIAM

2025-04-30

In other news, I'm speaking at #Authcon, a new CIAM-focused event happening inside APIDays NYC from May 14 to 15.

I'll be talking about how browsers have become gatekeepers for login and what that means for authentication, identity, and even payments.

It’s not all FUD, either! There are real opportunities here, if you’re paying attention.

Reg link + special code in the thread. It doesn’t unlock a discount, but it does prove I'm a helpful human.

#CIAM #Authentication #BrowserSecurity #FedCM

2025-02-25

Unsurprisingly, @sphcow brings up a topic not often covered in conversations about identity, but that is extremely relevant. Dealing with customers in regulated industries, the "friends and family" fraud vector was a significant concern that invalidated a lot of "best practices" approaches. Agentic AI is going to exacerbate the problem.

#identity #fraud #CIAM #AgenticAI

sphericalcowconsulting.com/202

Tom's Hardware Italiatomshw
2024-06-28

🌟 WSO2 è il leader assoluto nel KuppingerCole CIAM Platforms Leadership Compass 2024! 🚀

🔗 tomshw.it/business/wso2-e-stat

Dr. Branden R. Williamsbrw@infosec.exchange
2024-01-23

Ten Things Companies Get Wrong about Customer Identity: brandenwilliams.com/blog/2024/

Are there others you can think of that I missed? Let me know! #ciam #identity #iam #customeridentity

GripNewsGripNews
2023-10-27

🌖 Grammarly的OAuth錯誤
➤ Grammarly的OAuth錯誤及其對您的影響
fusionauth.io/blog/grammarly-p
一家安全公司披露了三個與社交登錄和令牌驗證相關的漏洞,影響了一些知名應用程式,包括Vidio、Bukalapak和Grammarly。這些漏洞現已修復,但可能還有其他受影響的網站。文章提到,這些漏洞使得使用者帳戶被接管的風險變得很真實。文章強調了使用OAuth令牌時的驗證重要性,並提醒開發者要確保每次都驗證令牌的簽名和內容。此外,文章還強調了使用客戶身份和訪問管理工具來保護使用者的重要性。
+ 這篇文章提醒了我們在開發應用程式時要注意令牌的驗證,以保護使用者的資料安全。
+ 使用客戶身份和訪問管理工具確實是保護使用者資料的重要措施,開發者應該重視這方面的安全性。

This is one topic that comes up in every assignment, in many discussions: IAM, what's in it for us, what does it cost and what does it bring?

Today my contribution about the business case for
#IAM is published in issue 12 of the Body of Knowledge of @idpro@infosec.exchange. It specifically covers #IGA, #PAM and #CIAM, but there is much more to the business case for IAM.


As you can see, there are some tables with many different business case elements, but they are hard to read on a webpage, so please follow the link to the pdf with the tables.


And if you have another view, or if you have other topics that can be added, follow the link to the github pages so that we can start writing an updated version.


Enjoy the read!

https://bok.idpro.org/article/id/97/

GripNewsGripNews
2023-08-24

🌘 單一應用程式的CIAM
➤ CIAM系統可以輕鬆地提供身份驗證相關功能,即使只有一個應用程式。
ciamweekly.substack.com/p/ciam
即使只有一個應用程式,使用CIAM系統也有價值,因為它可以輕鬆地提供身份驗證相關功能,例如WebAuthn / passkeys、社交登錄和魔法連結。外包您的身份驗證到CIAM系統可以使啟用和維護這些功能更加容易。
+ CIAM系統是一個非常有用的工具,可以幫助管理員輕鬆地控制和監視用戶訪問。
+ 即使只有一個應用程式,使用CIAM系統也可以提高安全性和方便性。

2023-07-05

Without fanfare or fireworks, @Clerkdev raises $30M #funding on top of their march $15M round.

Clerk "solves user management so developers can stop re-inventing the wheel"

#IAM #CIAM

GripNewsGripNews
2023-06-19

🌘 GitHub - IridiumIdentity/iridium: 一個低代碼、客戶身份管理(CIAM)系統,用於社交提供者集成
➤ 什麼是Iridium?社交登錄提供者是什麼?為什麼這很重要?如何貢獻?
github.com/IridiumIdentity/iri
Iridium是一個符合OAuth2.x的客戶身份和訪問管理(CIAM)系統,可讓開發人員以低代碼方式將第三方社交登錄提供者集成到自己的系統中。Iridium有助於提高客戶體驗,提供無縫和可自定義的登錄體驗,並可減少開發時間和簡化產品開發。
+ 這是一個很好的工具,可以幫助開發人員更輕鬆地集成社交登錄提供者,並提高客戶體驗。
+ 低代碼方式的集成對於那些不熟悉身份驗證和授權的開發人員來說非常有用。

damienboddamienbod
2023-06-05
damienboddamienbod
2023-04-15

I will be speaking about application security at the Azure Bootcamp Switzerland in Bern, a technology conference focusing on the Microsoft Azure Cloud. I really recommend this. Please come a say hello, would love to meet you, really looking forward.

azurebootcamp.ch/

Thanks for organizing Manuel Meyer Stefan Johner Stefan Roth

Scott DeToffoldetoffol@mstdn.social
2022-12-16

Looks like Twitter stopped supporting Google Voice (and likely all VoIP numbers) for 2nd factor, at least on my account.

#CIAM

Dr. Branden R. Williamsbrw@infosec.exchange
2022-12-05

We just launched our new Try It feature today at Ping. If you ever wanted to try our #ciam stuff with some sample apps, go check it out!

pingidentity.com/en/try-ping.h

TwitterRTBotmloki@mstdn.mx
2019-01-17

RT @ConsulMexPho
No te pierdas la radionovela “Tu mentira”, sobre la trata de personas. Infórmate, Cuídate y Denuncia. Acércate a tu Consulado, estamos para apoyarte. #CIAM #HablemosSobreTrata @CNDH @INALIMEXICO cndh.org.mx/Campana_Prevencion

André Koot RCXmeneer
2018-11-14

should cover the use of - Wyle

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst