logo

HTTP Request Signatures, (Mon, Sep 8th)

ID: 5d31f4db-1115-568f-8909-f2e526987661

STIX ID: report--5d31f4db-1115-568f-8909-f2e526987661

Feed Name: SANS ISC Diary

Date Published: 2025-09-08

Date Updated: 2026-04-19

...
...

This report notes the first appearance of HTTP Message Signatures headers (Signature-Input, Signature-Agent, Signature) in honeypot traffic and explains how RFC 9421 supports bot authentication by signing selected request components and publishing public keys via a well-known URL. It includes an example signed request and JWK response, and references integrations (e.g., Cloudflare, Zuplo) that can validate trusted bots and reduce impersonation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.