YoVDO

Deserialization Exploits in Java - Why Should I Care?

Offered By: Devoxx via YouTube

Tags

Devoxx Courses Cybersecurity Courses Java Courses XML Courses YAML Courses Software Engineering Courses JSON Courses Secure Coding Practices Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the critical security vulnerabilities associated with deserialization in Java through this informative 48-minute conference talk from Devoxx. Delve into why hackers consider Java deserialization "the gift that keeps on giving" and understand how these vulnerabilities extend beyond Java's custom serialization framework to include JSON, XML, and YAML deserialization. Learn about the mechanics of deserialization vulnerabilities in Java, the creation of attack chains, and the recent Log4j deserialization issues. Through various demonstrations, gain insights into different security problems that can arise during data deserialization. Discover mitigation strategies to protect your applications, including new features in Java 17. By the end of this talk, acquire a comprehensive understanding of deserialization vulnerabilities and actionable knowledge to enhance the security of your Java code.

Syllabus

Deserialization exploits in Java: why should I care? by Brian Vermeer


Taught by

Devoxx

Related Courses

Introduction Pratique à YAML
Coursera Project Network via Coursera
Ansible Automation For Beginners to Advance - Step by Step
Udemy
Kubernetes for Developers: Deploying Your Code
Pluralsight
Continuous Delivery and DevOps with Azure DevOps: Managing Builds
Pluralsight
Automating Infrastructure Deployment Using Google Cloud Deployment Manager
Pluralsight