This document is a survey of authorization systems for web applications, focusing on the security challenges posed by the distributed nature of modern web services. It discusses various attacks on web services and emphasizes the importance of authorization in mitigating security vulnerabilities. Several authorization models and frameworks are reviewed, highlighting the necessity for systems to dynamically adapt to user requests within a service-oriented architecture.
Related topics: