Главная
Study mode:
on
1
Introduction
2
What is a vulnerability
3
Why should you care
4
Its not a smoking gun
5
Who the bad guys are
6
We are weak
7
We do this
8
Vulnerability
9
CVS
10
Vulnerability Scoring System
11
Vulnerability Communication
12
Security Updates
13
How Theyre Being Found
14
Why This Talk Exists
15
Statistics
16
Local attacks
17
Serialisation
18
Whitelisting
19
Patti Struts
20
jdwpiece
21
connect
22
summary
23
static code analyzers
24
Takeaways
25
Questions
Description:
Explore the world of Java vulnerabilities in this 51-minute Devoxx conference talk. Delve into the reasons behind Java's reputation for security issues, learn about ongoing efforts to address these concerns, and discover strategies to minimize your own exposure. Gain insights into the reporting, management, and resolution of Java vulnerabilities, as well as specific attack vectors and the definition of a 'vulnerability'. With the rising threat of cybercrime, equip yourself with the knowledge to defend your code through practical examples and code demonstrations. Understand the intricacies of vulnerability scoring systems, security updates, and communication protocols. Examine local attacks, serialisation issues, and the importance of whitelisting. Learn about static code analyzers and their role in identifying potential vulnerabilities. By the end of this talk, you'll be better prepared to tackle security issues in Java and strengthen your defenses against potential threats.

The Anatomy of Java Vulnerabilities

Devoxx
Add to list