TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

What is real importance of the OAuth *state* parameter is?

1 pointsby DBformoreabout 1 year ago
A lot of developers are not sure about the answer.<p>Security researchers from Salt could install malicious ChatGPT plugins, just because of a minor state mistake that ChatGPT made.<p>If you want to understand OAuth, this post is for you: https:&#x2F;&#x2F;salt.security&#x2F;blog&#x2F;security-flaws-within-chatgpt-extensions-allowed-access-to-accounts-on-third-party-websites-and-sensitive-data

1 comment

MorLabout 1 year ago
Could you elaborate? What do you mean by &quot;could install malicious ChatGPT plugins&quot; ?
评论 #39698267 未加载