Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Cryptographically authenticating SAML assertions is the most perilous part of implementing SAML

The incredible overengineering of the XML signature specification is certainly to blame for this recent SAML verification vulnerability (from the same site): https://news.ycombinator.com/item?id=41586031



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: