SAML-Toolkits / java-saml

Java SAML toolkit
MIT License
634 stars 398 forks source link

Usage of string for private key #384

Open akwick opened 2 years ago

akwick commented 2 years ago

During an empirical study to understand the nature of cryptographic misuses in enterprise-driven projects on GitHub, we randomly inspected a few of the misuses. One of the misuses for which we could confirm as a true positive of the analysis, CogniCryptSAST, is in this project.

We hope that this information will help you and we looking forward to your response.