%% You should probably cite draft-ietf-oauth-closing-redirectors instead of this I-D. @techreport{bradley-oauth-open-redirector-00, number = {draft-bradley-oauth-open-redirector-00}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-bradley-oauth-open-redirector/00/}, author = {John Bradley and Antonio Sanso and Hannes Tschofenig}, title = {{OAuth 2.0 Security: OAuth Open Redirector}}, pagetotal = 7, year = 2015, month = jan, day = 21, abstract = {This document gives additional security considerations for OAuth, beyond those in the OAuth 2.0 specification and in the OAuth 2.0 Threat Model and Security Considerations.}, }