6th OWASP Stuttgart Chapter Stammtisch

Details
Modern Authentication Demystified - A deep dive into Spring Security's latest innovations
In this session, we explore the latest advancements in Spring Security that are reshaping how we secure modern applications. With a focus on practical applications, we’ll discuss the revolutionary Passkey Authentication, a password-less and phishing-resistant mechanism based on WebAuthn and FIDO2 standards. Next, we’ll examine One-Time Tokens, a robust way to secure sensitive actions and enhance user experience for scenarios like password resets and transaction approvals. Finally, we’ll delve into the emerging concept of Token Exchange, which facilitates seamless cross-service authentication by securely exchanging OAuth tokens. Attendees will gain a clear understanding of how these new features work, their real-world use cases, and best practices for integrating them into their Spring Security applications.
Agenda:
- 6:00 PM: Arrival
- 6:30 PM - 7:30 PM: Presentation
- 7:30 PM - approximately 9:00 PM: Barbecue, drinks, discussion, and networking

6th OWASP Stuttgart Chapter Stammtisch