Thursday, 18 July 2019

Why your current session management method is probably insecure!

Hi everyone!I have created this post to discuss and get people’s opinions on what they think about security in session management. I wanted to share my experience while researching this topic for a project that I recently did. I have written this explanatory two-part blog condensing the knowledge which took me months to gather and understand.The first blog extensively covers the basics of what authentication / authorization and session management is, where do OAuth and JWT come into the picture, how session management is currently done on some of the most popular websites, what are the most common threats related to those models etc.Finally, in the second part, I have suggested some methods which you can use to make your session more secure and have provided a link to the library which I developed for this exact purpose. The library is called SuperTokens and it is currently designed to work with NodeJS, MySQL, MongoDB and Laravel and support for more languages is coming soon.It would be awesome if people here can check it out and use it in their apps and provide feedback. Hope you like it and I look forward to your suggestions and comments.SuperTokens WebsiteAll you need to know about user session security

Submitted July 18, 2019 at 05:56PM by ilovefunctions

No comments:

Post a Comment