[Prev]

2.12 Impersonation threats

T121-Gift

Users giving away their credentials to others

T122-Loss

Users losing their credentials

T123-Careless

Users not protecting their credentials properly e.g. posting passwords on post-it stickers

T124-Delegation

Authentication delegation models in which the delegate assumes the user's original ID instead of using their own (e.g. as in Shibboleth see https://spaces.internet2.edu/display/ShibuPortal/Solution+Proposal)


[Prev | Next]