The New Wave of Deserialization Bugs
Start speaking a new language. It’s just 3 weeks away.
Free courses from frontend to fullstack and AI
Overview
Google, IBM & Meta Certificates — All 10,000+ Courses at 40% Off
One annual plan covers every course and certificate on Coursera. 40% off for a limited time.
Get Full Access
Explore the critical issue of deserialization bugs in a 32-minute conference talk from NorthSec. Delve into the recent wave of vulnerabilities affecting major Java software like WebLogic, Jenkins, and JBoss due to a common bug pattern. Gain insights into the risks associated with deserialization mechanisms and learn how these vulnerabilities can be exploited. Discover available fixes for known vulnerable applications and understand the potential risks for proprietary enterprise software. Examine a tool designed to identify vulnerable patterns and extend your knowledge beyond Java, with examples provided for PHP and Python deserialization vulnerabilities.
Syllabus
Philippe Arteau - The New Wave of Deserialization Bugs
Taught by
NorthSec