Viewing profile — asanso
asanso
HN member- Joined
- Mon, Feb 10, 2014, 3:13 PM UTC
- HN karma
- 45
- Public activity
- 16 items
- HN profile
- View on Hacker News ↗
About asanso
No profile information was provided.
Recent public activity
-
comment
Comment #13867035
I agree on all the accounts on what you said. I am probably biased by the fact I like JSON over XML. Probably JOSE just took the wrong path and could have been designed way better …
-
comment
Comment #13866956
It seems that Matthew Green warned them about some of their choices though back in 2012!! https://www.ietf.org/mail-archive/web/jose/current/msg00366....
-
comment
Comment #13866892
The author of http://blog.intothesymmetry.com/2017/03/critical-vulnerabili... here FWIW. Personally I would not be so drastic. JOSE per se is not too bad (at least the idea is cool…
-
comment
Comment #10988871
indeed. but there is always Static DH :) even if not so popular...
-
comment
Comment #10988831
hi the author of the vuln here. this is my write up http://intothesymmetry.blogspot.ch/2016/01/openssl-key-recov...
-
comment
Comment #10988830
hi the author of the vuln here. this is my write up http://intothesymmetry.blogspot.ch/2016/01/openssl-key-recov...
- story
- story
- story
- story
-
comment
Comment #8177278
I hope Firefox will also implement nosniff
- story
-
story
How I have hacked Facebook again and would have stolen a valid access token)
http://intothesymmetry.blogspot.ch/2014/04/oauth-2-how-i-have-hacked-facebook.html
- story
-
story
OAuth and Bug Bounty from Facebook and Google
http://intothesymmetry.blogspot.ch/2014/02/oauth-2-attacks-and-bug-bounties.html
- story