@phdthesis{15901, abstract = {{XML Encryption and XML Signature describe how to apply encryption and signing algorithms to XML documents. These specifications are implemented in a wide range of systems and frameworks processing sensitive data, including banking, eGovernment, eCommerce, military, and eHealth infrastructures. The article presents practical and highly critical attacks which allow to forge signed XML documents or reveal contents of encrypted XML data.}}, author = {{Somorovsky, Juraj}}, issn = {{1611-2776}}, title = {{{On the insecurity of XML Security}}}, doi = {{10.1515/itit-2014-1045}}, year = {{2013}}, }