Not sure if this is news. The lead author of OAuth 2 resigned from the OAuth working group 2 years ago, citing all the security flaws inherent in the OAuth 2 spec.
http://www.cnet.com/news/oauth-2-0-leader-resigns-says-stand...
OP just spells out one way to take advantage of OAuth 2, and tacks on a sensational title.