Widely-used Java applications examined by researchers led by Alexandre Bartel at Umeå University in Sweden were found to have major security vulnerabilities in their deserialization process, in which packaged information is restored to its previous state.
The study found the flow of bytes allows attackers to modify information during deserialization to gain control over the receiving system.
Said Bartel, "The problem is that the programmers seem to repeat the same mistakes over and over again and therefore reintroduce the vulnerabilities."
From Tech Times
View Full Article
Abstracts Copyright © 2024 SmithBucklin, Washington, DC, USA
No entries found