RFC 6749 The OAuth 2.0 Authorization Framework
RFC 7521 Assertion Framework for OAuth 2.0 Client Authentication and Authorization Grants
RFC 6819 OAuth 2.0 Threat Model and Security Considerations
RFC 7523 JSON Web Token (JWT) Profile for OAuth 2.0 Client Authentication and Authorization Grants
(Draft) The OAuth 2.0 Authorization Framework: Bearer Token Usage