OWASP line

Authentication

A07: password storage, MFA, sessions & cookies, JWT pitfalls, OAuth/OIDC

4 sections

Start: TL;DR

Mid-level 4

  1. TL;DR, not read
  2. How it works, not read
  3. Quick recall (Q&A), not read
  4. Interview talking points, not read