September 2018
Intermediate to advanced
358 pages
9h 6m
English
In cases where application code receives user input directly into an object without performing sanitization on such input, an attacker has the opportunity to provide arbitrary commands. The input is then serialized and run on the operating system where the application resides, creating a possible attack vector for remote code execution.
Read now
Unlock full access