- From: Manu Sporny <msporny@digitalbazaar.com>
- Date: Sun, 23 Jun 2013 22:24:02 -0400
- To: Web Payments <public-webpayments@w3.org>
- CC: IETF HTTP Auth <http-auth@ietf.org>
The first cut (static version) of the Security Considerations for HTTP Signatures draft is up: https://payswarm.com/specs/ED/http-signatures-audit/2013-06-23/ There are a number of other attacks that need to be detailed in this draft, many of the the ones from Hawk apply here as well: https://github.com/hueniverse/hawk#security-considerations -- manu -- Manu Sporny (skype: msporny, twitter: manusporny, G+: +Manu Sporny) Founder/CEO - Digital Bazaar, Inc. blog: Meritora - Web payments commercial launch http://blog.meritora.com/launch/
Received on Monday, 24 June 2013 02:24:33 UTC