It's important that ActivityPub developers include data integrity checks for inbound activities.
Conversation
Notices
-
Embed this notice
Evan Prodromou (evan@cosocial.ca)'s status on Wednesday, 07-Feb-2024 12:41:41 JST Evan Prodromou -
Embed this notice
Jordan (jwf@cybervillains.com)'s status on Thursday, 08-Feb-2024 07:30:16 JST Jordan @naturzukunft @evan yes! Please elaborate.
-
Embed this notice
Evan Prodromou (evan@cosocial.ca)'s status on Thursday, 08-Feb-2024 07:30:16 JST Evan Prodromou @jwf @naturzukunft I'm writing a book about ActivityPub. I am working on the section of the chapter about inbound activities that deals with data integrity checks. I needed an example URL to show the importance of checks. In the book, I use the text, "Data integrity is no big deal, don't bother checking" for this Note.
-
Embed this notice
naturzukunft (naturzukunft@mastodon.social)'s status on Thursday, 08-Feb-2024 07:30:17 JST naturzukunft @evan Hey Evan, can you explain that a bit ?
-
Embed this notice
Evan Prodromou (evan@cosocial.ca)'s status on Thursday, 08-Feb-2024 07:40:30 JST Evan Prodromou @scott both of those, and also that there are not intentional fibs in there. Naive implementations may suffer from cache poisoning attacks.
-
Embed this notice
Scott M. Stolz (scott@authorship.studio)'s status on Thursday, 08-Feb-2024 07:40:37 JST Scott M. Stolz Are you talking about making sure that an incoming message is not corrupted, or are you talking about making sure the sender is who they say they are, or both?
-
Embed this notice