Sunday 19 November 2017
Contact US    |    Archive
slideshare
28 days ago

Mitigating Java Deserialization attacks from within the JVM (improved version)


This deck contains a few improvements based on received feedback, such as the addition of links and reworded some points for clarity. A talk about the existing ways to mitigate Java deserialization attacks from the JVM. The talk was presented at the BSides Luxembourg conference on October 2017. It describes the use of Instrumentation Agents and Serialization Filtering and their limitations. It also talks about Runtime Virtualization and Runtime privilege de-escalation. At the talk there was also a PoC demo that demonstrated how an Instrumentation Agent could be tampered from a file upload vulnerability at the application level.

Read on the original site


MISION Y VISION

- slideshare

Read We Rise | Online

- slideshare

First look at ‘Bullet Head’

- themalaymailonline
Most Popular (6 hours)

Revista Noviembre

- slideshare

Most Popular (24 hours)

Drogas vegetales

- slideshare

Hellouin Noel 2017

- slideshare

Sindhi presentation

- slideshare

Blossom magic

- slideshare

Balance Social 2015

- slideshare

LRT3 too close for comfort

- themalaymailonline

Most Popular (a week)

PARLE PROJECT IT

- slideshare

Decreto 2715 de 2010

- slideshare

Shannon Audio Books

- slideshare

Categories - Countries
All News
Malaysia