Tagged articles

OAuth 2.1

4 articles · Page 1 of 1
Xiaolin Talks Programming
Xiaolin Talks Programming
Aug 15, 2026 · Information Security

Enterprise API Security in Spring Boot: OAuth 2.1, mTLS & Signature Verification

This article details a comprehensive enterprise API security implementation using Spring Boot, covering OAuth 2.1 with PKCE and token exchange, mutual TLS for transport security, API signature verification to prevent tampering and replay, JWT encryption with JWE, fine-grained permission control, security auditing, gateway-level authentication, and alignment with OWASP API Top 10 vulnerabilities.

API SecurityJWEOAuth 2.1
0 likes · 19 min read
Enterprise API Security in Spring Boot: OAuth 2.1, mTLS & Signature Verification
AI Engineer Programming
AI Engineer Programming
May 22, 2026 · Artificial Intelligence

Is MCP Dead? From Protocol Design to Production

The article examines Model Context Protocol (MCP), introduced by Anthropic in November 2024, tracing its rapid adoption, architectural design—including Host/Client/Server roles, transport layers, security and observability practices—and outlines production guidelines, future roadmap, and current limitations.

AI IntegrationJSON-RPCMCP
0 likes · 19 min read
Is MCP Dead? From Protocol Design to Production
Alibaba Cloud Developer
Alibaba Cloud Developer
May 9, 2025 · Information Security

What’s New in MCP 2025‑03‑26? Deep Dive into OAuth 2.1, Streamable HTTP, and JSON‑RPC Enhancements

The MCP 2025‑03‑26 release introduces mandatory OAuth 2.1 with PKCE, a single‑endpoint Streamable HTTP transport, required JSON‑RPC batch processing, richer tool metadata, structured progress notifications, audio multimodal support, and robust session management, all backed by extensive security hardening and performance gains.

API SecurityJSON-RPCMCP
0 likes · 14 min read
What’s New in MCP 2025‑03‑26? Deep Dive into OAuth 2.1, Streamable HTTP, and JSON‑RPC Enhancements