Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Or with statements like "We are quite familiar with the security of message formats like XML and JSON."


Perhaps XML and JSON are secure by virtue of the fact that their built-in security features can never be broken.


Not immediately obvious from the text indeed, but I'm certain they mean (the joy that is) XMLSEC and JWS here. Not sure about JWS but XMLSEC certainly has similarities to the format described here: you define exactly what parts are included in the signature.




Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: