Tore Nestenius

Freelance consultant and trainer

Top Authentication Fails in ASP.NET Core (and How to Avoid Them)

After writing over 1,000 answers on Stack Overflow, mostly about authentication and OpenID Connect, I've seen the same mistakes and pitfalls appear over and over. In this talk, I'll share some of the most common mistakes developers make when building authentication solutions.

From simple misconfigurations to deeper misunderstandings of protocols and security flows, we'll explore the traps that are all too easy to fall into when working with ASP.NET Core authentication. You'll learn why some common practices are actually anti-patterns, how to avoid opening security vulnerabilities, and what best practices can help you build secure, reliable authentication.

It will also feature live hands-on demonstrations to illustrate these concepts in practice. My experience will help you save time and build secure authentication solutions.

Tore Nestenius

With more than 23 years of professional experience in software development and over a decade specializing in training developers, Tore is a seasoned expert in the industry.

He currently operates as an independent consultant, delivering high-quality training, coaching, and consulting services. His areas of focus include .NET, ASP.NET Core, Software Architecture, Web Security, and Identity Management.

In 1996, Tore launched his first website, which evolved into Programmers Heaven—a web community that attracted a peak audience of over 750,000 visitors per month.