СОВРЕМЕННЫЕ МЕТОДЫ AУТЕНТИФИКAЦИИ И AВТОРИЗAЦИИ В ВЕБ-ПРИЛОЖЕНИЯХ

Authors

  • Гaсaнов Aмир Рayфович Мaгистрaнт, Aкaдемия госyдaрственного yпрaвления при Президенте Aзербaйджaнской Респyблики, Бaкy, Aзербaйджaн

Keywords:

authentication, authorization, MFA, OAuth2, JWT, OpenID Connect, biometric security, passwordless, Zero Trust, web application security, cybersecurity

Abstract

In the digital age, securing user identities and managing access rights have become the cornerstones of web application reliability. This article provides a comprehensive analysis of modern authentication and authorization methods, ranging from multi-factor authentication (MFA) to decentralized identity solutions. It explores the transition from traditional session-based security to stateless token-based protocols like OAuth2 and OpenID Connect. The study addresses key questions: What are the fundamental differences between authentication and authorization in modern architectures? How do biometric and passwordless technologies enhance user security? What challenges arise when implementing Zero Trust principles in government digital services? The paper highlights best practices for protecting sensitive data against credential stuffing and session hijacking attacks.

Published

2026-05-04

How to Cite

Гaсaнов Aмир Рayфович. (2026). СОВРЕМЕННЫЕ МЕТОДЫ AУТЕНТИФИКAЦИИ И AВТОРИЗAЦИИ В ВЕБ-ПРИЛОЖЕНИЯХ. Modern Scientific Method, (13). Retrieved from https://ojs.publisher.agency/index.php/MSM/article/view/8539

Issue

Section

Technical Science