We don’t yet have all the details, but we have enough to prompt a reminder to those who build applications of any type–especially web applications–that there are multiple authentication surface areas that you must secure when defending your app. ~ viaHow to Properly Defend Your Applications Against A… – HP Enterprise Business Community.
From my latest post on the HP Application Security Blog.
Many developers and security groups cover the front door but neglect everything else.