<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.ietf-oauth-v2-threatmodel" target="https://datatracker.ietf.org/doc/html/draft-ietf-oauth-v2-threatmodel-08">
   <front>
      <title>OAuth 2.0 Threat Model and Security Considerations</title>
      <author initials="T." surname="Lodderstedt" fullname="Torsten Lodderstedt">
         <organization>Deutsche Telekom AG</organization>
      </author>
      <author initials="M." surname="McGloin" fullname="Mark McGloin">
         <organization>IBM</organization>
      </author>
      <author initials="P." surname="Hunt" fullname="Phil Hunt">
         <organization>Oracle Corporation</organization>
      </author>
      <date month="October" day="6" year="2012" />
      <abstract>
	 <t>This document gives additional security considerations for OAuth, beyond those in the OAuth 2.0 specification, based on a comprehensive threat model for the OAuth 2.0 protocol.  This document is not an Internet Standards Track specification; it is published for informational purposes.
	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-ietf-oauth-v2-threatmodel-08" />
   
</reference>
