Basic XML Security Considerations

Abstract: This document presents fundamental information about XML and discusses how these fundamental truths influence XML security.  The document then describes a range of XML security issues, including several that are sometimes overlooked.  By referring to this document, a reader can become better informed about which security concepts apply to a given use case and obtain recommendations for implementing those security concepts.  Perhaps more importantly, the reader will become aware of what XML does not inherently provide.

Date Published:

Last Reviewed: 11 December 2017

Identifier: U/OO/234032-17

Dissemination Control: N/A

Length: 33 page(s)

Format: pdf

Type: Reference/Overview; Report

Tags: National Security Agency - NSA; Cyber; Guidance; Exploitation; Vulnerability; Data