Application Security Weekly (Video)

Making OAuth Scale Securely for MCPs - Aaron Parecki - ASW #360


Listen Later

The MCP standard gave rise to dreams of interconnected agents and nightmares of what those interconnected agents would do with unfettered access to APIs, data, and local systems. Aaron Parecki explains how OAuth's new Client ID Metadata Documents spec provides more security for MCPs and the reasons why the behavior and design of MCPs required a new spec like this.

Segment resources:

  • https://aaronparecki.com/2025/11/25/1/mcp-authorization-spec-update
  • https://www.ietf.org/archive/id/draft-ietf-oauth-client-id-metadata-document-00.html
  • https://oauth.net/cross-app-access/
  • https://oauth.net/2/oauth-best-practice/

Show Notes: https://securityweekly.com/asw-360

...more
View all episodesView all episodes
Download on the App Store

Application Security Weekly (Video)By Security Weekly Productions

  • 4.8
  • 4.8
  • 4.8
  • 4.8
  • 4.8

4.8

4 ratings


More shows like Application Security Weekly (Video)

View all
Security Now (Audio) by TWiT

Security Now (Audio)

2,005 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,029 Listeners

Pod Save America by Crooked Media

Pod Save America

87,453 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

8,088 Listeners

Hacking Humans by N2K Networks

Hacking Humans

316 Listeners

Cloud Security Podcast by TechRiot.io

Cloud Security Podcast

58 Listeners

Cybersecurity Headlines by CISO Series

Cybersecurity Headlines

139 Listeners