binance-java-api icon indicating copy to clipboard operation
binance-java-api copied to clipboard

Secret key should be stored as a byte[]

Open antlen opened this issue 3 years ago • 0 comments

https://docs.oracle.com/javase/8/docs/technotes/guides/security/crypto/CryptoSpec.html#PBEEx

However, here's the caveat: Objects of type String are immutable, i.e., there are no methods defined that allow you to change (overwrite) or zero out the contents of a String after usage. This feature makes String objects unsuitable for storing security sensitive information such as user passwords.

antlen avatar Nov 06 '21 13:11 antlen