{"id":168,"date":"2018-03-01T12:27:35","date_gmt":"2018-03-01T11:27:35","guid":{"rendered":"https:\/\/www.netwerkhelden.nl\/cms\/?p=168"},"modified":"2018-03-06T12:31:05","modified_gmt":"2018-03-06T11:31:05","slug":"saml-kwetsbaarheid","status":"publish","type":"post","link":"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/","title":{"rendered":"SAML kwetsbaarheid"},"content":{"rendered":"<p>Gisteren heeft Duo Labs, het research team van Duo Security, naar buiten gebracht dat er een kwetsbaarheid is gevonden in de XML implementatie van SAML. De details daarover zijn te lezen in hun blog:<\/p>\n<p><a href=\"https:\/\/duo.com\/blog\/duo-finds-saml-vulnerabilities-affecting-multiple-implementations\" target=\"_blank\" rel=\"noopener\">https:\/\/duo.com\/blog\/duo-finds-saml-vulnerabilities-affecting-multiple-implementations<\/a><\/p>\n<h2>Wat is SAML<\/h2>\n<p>SAML, de Security Assertion Markup Language, is een open standaard gebaseerd op de XML markup taal die gebruikt kan worden voor de uitwisseling van authenticatie en authorisatie gegevens. Met SAML kan er dus beveiligingsinformatie uitgewisseld worden tussen een Netscaler ADC en bijvoorbeeld Azure AD of een andere third party iDP (Identity Provider) zoals Duo of Okta om zodoende SSO (Single sign-on) te bewerkstelligen.<\/p>\n<h2>Wat houdt de kwetsbaarheid<\/h2>\n<p>De kwetsbaarheid zit hem in een ontwerp fout die in verschillende SSO software implementaties en meerdere open-source bibliotheken is te vinden.<\/p>\n<p>Waar het in het kort op neer komt is dat de manier waarop commentaar in XML wordt afgehandeld, misbruikt kan worden.<\/p>\n<p>Als we als voorbeeld de volgende SAML assertion nemen:<\/p>\n<pre>&lt;saml:NameID&gt;geen-admin@domein.com&lt;\/saml:NameID&gt;<\/pre>\n<p>We kunnen daar ook commentaar in zetten in de vorm van &lt;!&#8211;jouw commentaar &#8211;&gt; tags<\/p>\n<pre>&lt;saml:NameID&gt;geen-&lt;!-- this is a comment --&gt;admin@domein.com&lt;\/saml:NameID&gt;<\/pre>\n<p>Hierdoor kan de gebruikersnaam niet meer correct geparsed worden waardoor een aanvaller potentieel toegang kan krijgen tot het systeem zonder dat hij geauthenticeerd is.<\/p>\n<h2>Wie zijn er vatbaar<\/h2>\n<p>Duo geeft in zijn blog aan dat er meerdere vendoren vatbaar zijn voor deze kwetsbaarheid. Deze lijst is inmiddels gepubliceerd op de website van CERT op:<\/p>\n<p><a href=\"https:\/\/www.kb.cert.org\/vuls\/id\/475445\" target=\"_blank\" rel=\"noopener\">https:\/\/www.kb.cert.org\/vuls\/id\/475445<\/a><\/p>\n<p>Hierin te lezen dat AssureBridge en Okta niet getroffen zijn door deze kwetsbaarheid, Duo, OnmiAuth en Onelogin bijvoorbeeld wel.<\/p>\n<p>Okta heeft inmiddels een statement uitgebracht:<\/p>\n<p><a href=\"https:\/\/www.okta.com\/blog\/2018\/02\/what-you-need-to-know-about-saml-vulnerability-research\/\" target=\"_blank\" rel=\"noopener\">https:\/\/www.okta.com\/blog\/2018\/02\/what-you-need-to-know-about-saml-vulnerability-research\/<\/a><\/p>\n<blockquote><p>Okta is not vulnerable, and we don&#8217;t have any indication that the vulnerability was exploited in our systems.<\/p><\/blockquote>\n<p>Duo heeft een patch uitgebracht voor hun Duo Network Gateway producten:<\/p>\n<p><a href=\"https:\/\/duo.com\/labs\/psa\/duo-psa-2017-003\" target=\"_blank\" rel=\"noopener\">https:\/\/duo.com\/labs\/psa\/duo-psa-2017-003<\/a><\/p>\n<p>De lijst met vendoren waarvan de status nog niet bekend is, is wellicht interessanter. Op deze lijst staan onder andere grote namen zoals Cisco, Google en Microsoft.<\/p>\n<p>Citrix staat niet op de lijst van vendoren hoewel de Netscaler wel ingezet kan worden zowel als SP als IDP.<\/p>\n<p>Ik heb vanmorgen contact gehad met Citrix en zij geven aan dat zij de Netscaler productportfolio niet vatbaar is voor deze kwetsbaarheid.<\/p>\n<blockquote><p>I did my research on this and currently there is no impact of this vulnerability on NetScaler. However, if any such issue occurs it will be updated by Citrix.<\/p><\/blockquote>\n<p>Wanneer je gebruikt maakt van Duo, Onelogin of Shibboleth openSAML als SAML Idp dan raden we aan op contact op te nemen met die partijen.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Gisteren heeft Duo Labs, het research team van Duo Security, naar buiten gebracht dat er een kwetsbaarheid is gevonden in de XML implementatie van SAML. De details daarover zijn te lezen in hun blog: https:\/\/duo.com\/blog\/duo-finds-saml-vulnerabilities-affecting-multiple-implementations Wat is SAML SAML, de Security Assertion Markup Language, is een open standaard gebaseerd op de XML markup taal die &hellip; <a href=\"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/\" class=\"more-link\">Verder lezen <span class=\"screen-reader-text\">SAML kwetsbaarheid<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":174,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":false,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2}},"categories":[1],"tags":[],"class_list":["post-168","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-geen-categorie"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v26.8 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>SAML kwetsbaarheid - Netwerkhelden<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/\" \/>\n<meta property=\"og:locale\" content=\"nl_NL\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"SAML kwetsbaarheid - Netwerkhelden\" \/>\n<meta property=\"og:description\" content=\"Gisteren heeft Duo Labs, het research team van Duo Security, naar buiten gebracht dat er een kwetsbaarheid is gevonden in de XML implementatie van SAML. De details daarover zijn te lezen in hun blog: https:\/\/duo.com\/blog\/duo-finds-saml-vulnerabilities-affecting-multiple-implementations Wat is SAML SAML, de Security Assertion Markup Language, is een open standaard gebaseerd op de XML markup taal die &hellip; Verder lezen SAML kwetsbaarheid\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/\" \/>\n<meta property=\"og:site_name\" content=\"Netwerkhelden\" \/>\n<meta property=\"article:published_time\" content=\"2018-03-01T11:27:35+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2018-03-06T11:31:05+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.netwerkhelden.nl\/cms\/wp-content\/uploads\/2018\/02\/samlkwetsbaarheid.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1250\" \/>\n\t<meta property=\"og:image:height\" content=\"455\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Eltjo van Gulik\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@eltjovg\" \/>\n<meta name=\"twitter:site\" content=\"@eltjovg\" \/>\n<meta name=\"twitter:label1\" content=\"Geschreven door\" \/>\n\t<meta name=\"twitter:data1\" content=\"Eltjo van Gulik\" \/>\n\t<meta name=\"twitter:label2\" content=\"Geschatte leestijd\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minuten\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/\"},\"author\":{\"name\":\"Eltjo van Gulik\",\"@id\":\"https:\/\/www.netwerkhelden.nl\/cms\/#\/schema\/person\/e7b0a46728add9ab4b55e6710ff4c1c5\"},\"headline\":\"SAML kwetsbaarheid\",\"datePublished\":\"2018-03-01T11:27:35+00:00\",\"dateModified\":\"2018-03-06T11:31:05+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/\"},\"wordCount\":430,\"image\":{\"@id\":\"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.netwerkhelden.nl\/cms\/wp-content\/uploads\/2018\/02\/samlkwetsbaarheid.jpg\",\"articleSection\":[\"Geen categorie\"],\"inLanguage\":\"nl-NL\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/\",\"url\":\"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/\",\"name\":\"SAML kwetsbaarheid - Netwerkhelden\",\"isPartOf\":{\"@id\":\"https:\/\/www.netwerkhelden.nl\/cms\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.netwerkhelden.nl\/cms\/wp-content\/uploads\/2018\/02\/samlkwetsbaarheid.jpg\",\"datePublished\":\"2018-03-01T11:27:35+00:00\",\"dateModified\":\"2018-03-06T11:31:05+00:00\",\"author\":{\"@id\":\"https:\/\/www.netwerkhelden.nl\/cms\/#\/schema\/person\/e7b0a46728add9ab4b55e6710ff4c1c5\"},\"breadcrumb\":{\"@id\":\"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/#breadcrumb\"},\"inLanguage\":\"nl-NL\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"nl-NL\",\"@id\":\"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/#primaryimage\",\"url\":\"https:\/\/www.netwerkhelden.nl\/cms\/wp-content\/uploads\/2018\/02\/samlkwetsbaarheid.jpg\",\"contentUrl\":\"https:\/\/www.netwerkhelden.nl\/cms\/wp-content\/uploads\/2018\/02\/samlkwetsbaarheid.jpg\",\"width\":1250,\"height\":455,\"caption\":\"SAML kwetsbaarheid\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.netwerkhelden.nl\/cms\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"SAML kwetsbaarheid\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.netwerkhelden.nl\/cms\/#website\",\"url\":\"https:\/\/www.netwerkhelden.nl\/cms\/\",\"name\":\"Netwerkhelden\",\"description\":\"door Eltjo van Gulik\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.netwerkhelden.nl\/cms\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"nl-NL\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.netwerkhelden.nl\/cms\/#\/schema\/person\/e7b0a46728add9ab4b55e6710ff4c1c5\",\"name\":\"Eltjo van Gulik\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"nl-NL\",\"@id\":\"https:\/\/www.netwerkhelden.nl\/cms\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/1a3f5ecf7718ec860c04fae1404c925d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/1a3f5ecf7718ec860c04fae1404c925d?s=96&d=mm&r=g\",\"caption\":\"Eltjo van Gulik\"},\"description\":\"Eltjo is een enthousiaste en gedreven technisch consultant met ruim 18 jaar ervaring in de IT met een sterke focus op server- en applicatie virtualisatie producten van onder andere Microsoft (RDS, App-v, etc) en Citrix (XenDesktop, XenApp) en het installeren, configureren en beheren van applicaties binnen deze omgevingen.\",\"sameAs\":[\"http:\/\/www.netwerkhelden.nl\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"SAML kwetsbaarheid - Netwerkhelden","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/","og_locale":"nl_NL","og_type":"article","og_title":"SAML kwetsbaarheid - Netwerkhelden","og_description":"Gisteren heeft Duo Labs, het research team van Duo Security, naar buiten gebracht dat er een kwetsbaarheid is gevonden in de XML implementatie van SAML. De details daarover zijn te lezen in hun blog: https:\/\/duo.com\/blog\/duo-finds-saml-vulnerabilities-affecting-multiple-implementations Wat is SAML SAML, de Security Assertion Markup Language, is een open standaard gebaseerd op de XML markup taal die &hellip; Verder lezen SAML kwetsbaarheid","og_url":"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/","og_site_name":"Netwerkhelden","article_published_time":"2018-03-01T11:27:35+00:00","article_modified_time":"2018-03-06T11:31:05+00:00","og_image":[{"width":1250,"height":455,"url":"https:\/\/www.netwerkhelden.nl\/cms\/wp-content\/uploads\/2018\/02\/samlkwetsbaarheid.jpg","type":"image\/jpeg"}],"author":"Eltjo van Gulik","twitter_card":"summary_large_image","twitter_creator":"@eltjovg","twitter_site":"@eltjovg","twitter_misc":{"Geschreven door":"Eltjo van Gulik","Geschatte leestijd":"2 minuten"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/#article","isPartOf":{"@id":"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/"},"author":{"name":"Eltjo van Gulik","@id":"https:\/\/www.netwerkhelden.nl\/cms\/#\/schema\/person\/e7b0a46728add9ab4b55e6710ff4c1c5"},"headline":"SAML kwetsbaarheid","datePublished":"2018-03-01T11:27:35+00:00","dateModified":"2018-03-06T11:31:05+00:00","mainEntityOfPage":{"@id":"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/"},"wordCount":430,"image":{"@id":"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/#primaryimage"},"thumbnailUrl":"https:\/\/www.netwerkhelden.nl\/cms\/wp-content\/uploads\/2018\/02\/samlkwetsbaarheid.jpg","articleSection":["Geen categorie"],"inLanguage":"nl-NL"},{"@type":"WebPage","@id":"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/","url":"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/","name":"SAML kwetsbaarheid - Netwerkhelden","isPartOf":{"@id":"https:\/\/www.netwerkhelden.nl\/cms\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/#primaryimage"},"image":{"@id":"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/#primaryimage"},"thumbnailUrl":"https:\/\/www.netwerkhelden.nl\/cms\/wp-content\/uploads\/2018\/02\/samlkwetsbaarheid.jpg","datePublished":"2018-03-01T11:27:35+00:00","dateModified":"2018-03-06T11:31:05+00:00","author":{"@id":"https:\/\/www.netwerkhelden.nl\/cms\/#\/schema\/person\/e7b0a46728add9ab4b55e6710ff4c1c5"},"breadcrumb":{"@id":"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/#breadcrumb"},"inLanguage":"nl-NL","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/"]}]},{"@type":"ImageObject","inLanguage":"nl-NL","@id":"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/#primaryimage","url":"https:\/\/www.netwerkhelden.nl\/cms\/wp-content\/uploads\/2018\/02\/samlkwetsbaarheid.jpg","contentUrl":"https:\/\/www.netwerkhelden.nl\/cms\/wp-content\/uploads\/2018\/02\/samlkwetsbaarheid.jpg","width":1250,"height":455,"caption":"SAML kwetsbaarheid"},{"@type":"BreadcrumbList","@id":"https:\/\/www.netwerkhelden.nl\/cms\/2018\/03\/01\/saml-kwetsbaarheid\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.netwerkhelden.nl\/cms\/"},{"@type":"ListItem","position":2,"name":"SAML kwetsbaarheid"}]},{"@type":"WebSite","@id":"https:\/\/www.netwerkhelden.nl\/cms\/#website","url":"https:\/\/www.netwerkhelden.nl\/cms\/","name":"Netwerkhelden","description":"door Eltjo van Gulik","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.netwerkhelden.nl\/cms\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"nl-NL"},{"@type":"Person","@id":"https:\/\/www.netwerkhelden.nl\/cms\/#\/schema\/person\/e7b0a46728add9ab4b55e6710ff4c1c5","name":"Eltjo van Gulik","image":{"@type":"ImageObject","inLanguage":"nl-NL","@id":"https:\/\/www.netwerkhelden.nl\/cms\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/1a3f5ecf7718ec860c04fae1404c925d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/1a3f5ecf7718ec860c04fae1404c925d?s=96&d=mm&r=g","caption":"Eltjo van Gulik"},"description":"Eltjo is een enthousiaste en gedreven technisch consultant met ruim 18 jaar ervaring in de IT met een sterke focus op server- en applicatie virtualisatie producten van onder andere Microsoft (RDS, App-v, etc) en Citrix (XenDesktop, XenApp) en het installeren, configureren en beheren van applicaties binnen deze omgevingen.","sameAs":["http:\/\/www.netwerkhelden.nl"]}]}},"jetpack_publicize_connections":[],"jetpack_featured_media_url":"https:\/\/www.netwerkhelden.nl\/cms\/wp-content\/uploads\/2018\/02\/samlkwetsbaarheid.jpg","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/pawSix-2I","_links":{"self":[{"href":"https:\/\/www.netwerkhelden.nl\/cms\/wp-json\/wp\/v2\/posts\/168","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.netwerkhelden.nl\/cms\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.netwerkhelden.nl\/cms\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.netwerkhelden.nl\/cms\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.netwerkhelden.nl\/cms\/wp-json\/wp\/v2\/comments?post=168"}],"version-history":[{"count":4,"href":"https:\/\/www.netwerkhelden.nl\/cms\/wp-json\/wp\/v2\/posts\/168\/revisions"}],"predecessor-version":[{"id":173,"href":"https:\/\/www.netwerkhelden.nl\/cms\/wp-json\/wp\/v2\/posts\/168\/revisions\/173"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.netwerkhelden.nl\/cms\/wp-json\/wp\/v2\/media\/174"}],"wp:attachment":[{"href":"https:\/\/www.netwerkhelden.nl\/cms\/wp-json\/wp\/v2\/media?parent=168"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.netwerkhelden.nl\/cms\/wp-json\/wp\/v2\/categories?post=168"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.netwerkhelden.nl\/cms\/wp-json\/wp\/v2\/tags?post=168"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}