Latest from Tesseral
XML Signatures are a bad idea executed even worse
2000s XML mania continues to hold modern software back. But there are lasting lessons we can still learn from it.

Ulysse Carion
Cofounder and CTO, Tesseral
What a developer needs to know about SCIM
If you're selling business software, you'll likely run into a customer that wants something called "SCIM." Here's what you need to know.

Ned O'Leary
Cofounder and CEO, Tesseral
Australia/Lord_Howe is the weirdest timezone
Timezones are weird. But only finitely so. Here's the exact conceptual model you should have of them.

Ulysse Carion
Cofounder and CTO, Tesseral
Ruby-SAML pwned by XML signature wrapping attacks
GitLab and others are affected. The blame lies in the SAML specification, and in credulous engineers that implement it.

Ulysse Carion
Cofounder and CTO, Tesseral
A Gentle Introduction to SAML
The SAML spec is an absolute beast. We've each read it multiple times. Here's a simpler explanation.

Ned O'Leary
Cofounder and CEO, Tesseral