Resources
People often ask me "How did you learn how to hack?" The answer: by reading. This page is a collection of the blog posts and other articles that I have accumulated over the years of my journey. Enjoy!
OAuth is a third-party authorization delegation service. Essentially, if you do not want to hold the usernames and passwords yourselves, then have someone else do it!
The bulk of this list of OAuth test cases that should be done in order to see if the implementation is secure or not. Great article for what to do on a Penetration test!