#SpringSecurity

Manuel Hernandez Zemljicmanueltechlabs
2026-01-27

Ever wondered if you're handling passwords securely in Java? 🤔 I switched to char[] instead of String — it’s mutable, log-safe, and I can wipe it from memory after use. But here's the kicker: Spring Security still expects String in many places. 🔄

Is it worth using char[] despite the framework limits? What’s your go-to strategy for securing passwords in memory?

Full breakdown on my blog: manueltechlabs.com/posts/why-i

2026-01-12

This #InfoQ article explores a solution for Registering & Authenticating users through a client-side JavaScript application using the #SpringSecurity infrastructure, access and refresh tokens.

🎯 The goal is to explain the process in greater detail through clear and easy-to-follow #FlowDiagrams.

👉 Read it here: bit.ly/3DWoKFX

#Java #Spring #InfoQ

2026-01-09

🔍 Explore the best of #Java in 2025!

We’ve handpicked our favorite #InfoQ articles to help you master the trends that defined last year and are already shaping 2026. These are the must-reads for every JVM developer:

➡️ Building a RAG Application with Spring Boot, Spring AI, MongoDB Atlas Vector Search, and OpenAI by Matteo Rossi
bit.ly/47KRUUX

➡️ Spring Security Configuration with Flow Diagrams by Alexandr Manunin
bit.ly/3DWoKFX

➡️ Infusing AI into Your Java applications by Don Bourne, Michal Broz, Laura Cowen, Daniel Oh, Kevin Dubois
bit.ly/4oNmLqH

➡️ Spring AI 1.0 Delivers Easy AI Systems and Services by Josh Long
bit.ly/4lTYBc3

➡️ Jakarta EE 11 Overview: Virtual Threads, Records, and the Future of Persistence by Otavio Santana
bit.ly/46Pj4tX

Stay informed. Stay inspired. And always #StayAhead of the curve! Knowledge is power! 💪

#SpringAI #SpringSecurity #AI #RAG #JakartaEE #SoftwareEngineering

2025-12-01

There is also #SpringSecurity integration and #Actuator integration examples on the website. Really interested to hear feedback from #Spring developers.

JAVAPROjavapro
2025-11-27

Wie bleibt sicher nach dem Login? SSE löst das per Auto-Revalidierung statt komplexem Backchannel-Logout – effizient, fail-safe, frontend-ready.

Mehr von Alexander Bierler: javapro.io/de/xdev-sse-verbess

@xdevsoftware @vaadin

2025-11-27

Dive into the latest releases from #Spring 👉 bit.ly/3K9wRmf

GA releases of Spring Boot, Spring Security, Spring for GraphQL, Spring Integration, Spring Modulith, Spring REST Docs and Spring Batch.

#Java #SpringBoot #SpringSecurity #SpringFramework #ApacheKafka #AMQP #GraphQL

JAVAPROjavapro
2025-11-20

You log users in, but can you log them out—across instances, reliably, after revocation? A add-on closes critical gaps in /OIDC session control.

Learn what SSE solves: javapro.io/2025/07/25/explorin

@xdevsoftware

2025-09-23

🍃 The next installment of the Road to GA series about a cross-project, collaborative effort on new capabilities for HTTP service clients in #Spring is now live!

spring.io/blog/2025/09/23/http

#SpringFramework #SpringBoot #SpringCloud #SpringSecurity

JAVAPROjavapro
2025-09-15

Mehr Sicherheit für verteilte Spring-Anwendungen? SSE schützt Sessions über Instanzen hinweg, integriert Frontends wie & liefert Metriken via Actuator. Mehr dazu von Alexander Bierler: javapro.io/de/xdev-sse-verbess

@vaadin

2025-09-15

Spring Security для начинающих: конспект от аутентификации до JWT

На Хабре уже много статей про Spring Security — от кратких заметок до глубоких разборов. В этой статье я решил собрать всё в формате конспект-мануала, который можно читать как пошаговое введение: от базовой аутентификации и фильтров до JWT и OAuth2. Это материал, собранный по официальной документации и дополненный разъяснениями «на простом языке». Я не работал в больших enterprise-командах, поэтому буду рад комментариям и советам от более опытных коллег. Местами я использовал помощь ChatGPT: он помог структурировать материал и сделать стиль более читабельным, ближе к документации.

habr.com/ru/articles/946912/

#java #spring_security #springsecurity

JAVAPROjavapro
2025-09-04

works—until you need distributed logout, token checks, & frontend feedback. Read what SSE adds & how it simplifies what’s usually hard to implement.

A must-read for security-conscious teams: javapro.io/2025/07/25/explorin

@xdevsoftware @vaadin

2025-08-28

Check out what's new in the #Spring community 👉 bit.ly/3JyVeZX

The second milestone releases of Spring Boot, Spring Security, Spring Authorization Server, Spring for GraphQL, Spring Session, Spring Integration, Spring REST Docs, Spring Batch and Spring for Apache Pulsar.

#Java #SpringBoot #SpringSecurity SpringFramework #SpringBatch

JAVAPROjavapro
2025-08-03

reicht oft nicht aus – besonders bei & verteilten Systemen. SSE liefert automatische Token-Revalidierung, Frontend-Logout-Handling & Security-Metriken. Wie es funktioniert? Lese : javapro.io/de/xdev-sse-verbess

@vaadin

JAVAPROjavapro
2025-07-30

Session Handling, OIDC, verteilte Logins: SSE erweitert um das, was in komplexen Systemen oft fehlt. Alexander Bierler zeigt das -Toolkit – inkl. Revalidierung, Metriken & -Support.

Code & Docs: javapro.io/de/xdev-sse-verbess

@vaadin

JAVAPROjavapro
2025-07-30

Struggling with secure session handling in multi-instance Spring apps? This deep dive shows how SSE automates token revalidation, prevents stale sessions, & improves frontend sync.

Read it if alone isn’t enough: javapro.io/2025/07/25/explorin
@xdevsoftware

JAVAPROjavapro
2025-07-25

Session expiry, user revocation, token validation: doesn’t cover it all. SSE adds practical, production-ready solutions—without complex back-channel workarounds. Secure distributed apps with less code!

Read : javapro.io/2025/07/25/explorin

@xdevsoftware

2025-07-21

@xdevsoftware

🔐 We built it because we needed it – now it’s yours!

We often ran into the same challenge: handling OAuth2/OIDC securely and cleanly with #SpringSecurity.

So we created XDEV SSE – a practical extension born out of real-world needs. It simplifies authentication flows, boosts security, and integrates seamlessly with Vaadin.

XDEV Softwarexdevsoftware
2025-07-18

Check out our latest blog post on XDEV SSE! 🔐 Learn how our extension for simplifies OAuth2/OIDC handling, improves security, and integrates seamlessly with .

Dive into the code & discover its features: xdev.software/news

2025-06-24

Dive into the latest releases from #Spring 👉 bit.ly/44v29Lx

The first milestone release of Spring Vault 4.0; and point releases of Spring Boot, Spring Security, Spring Authorization Server, Spring Session, Spring Integration, Spring Modulith, Spring REST Docs, Spring AMQP, Spring for Apache Kafka, Spring for Apache Pulsar and Spring Web Services.

#Java #SpringBoot #SpringSecurity #SpringModulith #SpringVault

2025-05-28

Dive into the latest releases from #Spring 👉 bit.ly/3STMS0b

GA releases of Spring Boot, Spring Security, Spring Authorization Server, Spring Session, Spring Integration, Spring for GraphQL, Spring AI and Spring Web Services.

#Java #SpringBoot #SpringSecurity #SpringAI

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst