Tagged articles

AES-GCM

6 articles · Page 1 of 1
Cloud Architecture
Cloud Architecture
Sep 9, 2026 · Backend Development

Production-Grade Spring Boot API Encryption: RSA + AES-GCM Protocol & Implementation

This article details a production-ready end-to-end encryption protocol for Spring Boot APIs using RSA-OAEP for key wrapping and AES-GCM for payload encryption, covering protocol specification, replay protection with Redis, key rotation strategies, filter-based decryption, testing failure paths, observability, and deployment validation.

AES-GCMAPI EncryptionKey Rotation
0 likes · 43 min read
Production-Grade Spring Boot API Encryption: RSA + AES-GCM Protocol & Implementation
CodeSmart Hoops
CodeSmart Hoops
Aug 21, 2026 · Information Security

Interview Self‑Test: Multi‑Layer Anti‑Sniffing and Data‑Security Strategies

This article presents ten interview‑style questions and detailed answers covering HTTPS handshake, certificate pinning, request signing, replay‑attack defenses, HMAC‑SHA256 vs RSA‑SHA256, AES‑CBC vs AES‑GCM, the limits of front‑end encryption, mTLS operation in micro‑services, key‑rotation design, and why HTTPS alone is insufficient, illustrating a comprehensive, layered security approach.

AES-GCMCertificate PinningHMAC
0 likes · 21 min read
Interview Self‑Test: Multi‑Layer Anti‑Sniffing and Data‑Security Strategies
Ray's Galactic Tech
Ray's Galactic Tech
Aug 3, 2026 · Information Security

Are You Implementing Field-Level Encryption Correctly? Best Practices Explained

This article examines common pitfalls and misconceptions in field‑level encryption, explains why AES‑GCM and proper AAD are essential, outlines threat modeling, key hierarchy, blind indexing for searchable data, migration strategies, key rotation, performance considerations, and secure integration with MyBatis, Kubernetes, and Vault.

AES-GCMBlind IndexingField-Level Encryption
0 likes · 49 min read
Are You Implementing Field-Level Encryption Correctly? Best Practices Explained
dbaplus Community
dbaplus Community
Apr 9, 2026 · Information Security

Designing Practical Encrypted Storage for Sensitive User Data

This article explains why encrypting sensitive fields like passwords, phone numbers, and ID numbers is essential, details a balanced approach using AES‑GCM encryption, HMAC indexes, and masked fields, and shares real‑world lessons from implementing the solution in a production system.

AES-GCMHMACKey Rotation
0 likes · 21 min read
Designing Practical Encrypted Storage for Sensitive User Data
Ray's Galactic Tech
Ray's Galactic Tech
Dec 4, 2025 · Information Security

How to Secure Phone Numbers in Databases: Threat Modeling, Envelope Encryption, and High‑Performance Key Rotation

This guide presents a comprehensive, enterprise‑grade solution for encrypting phone numbers in databases, covering threat modeling, layered schema design, envelope encryption with KMS, Python service implementation, searchable indexes, key rotation, performance tuning, auditing, and common pitfalls.

AES-GCMKMSKey Rotation
0 likes · 11 min read
How to Secure Phone Numbers in Databases: Threat Modeling, Envelope Encryption, and High‑Performance Key Rotation