Skip to main content

Lesson 12 - OWASP Top 10 2017 - A8:2017-Insecure Deserialization

AppSec Starter is a basic application security awareness training applied to onboarding new developers. It is not the purpose of this training to discuss advanced and practical topics. Conviso has customized training and practical training platforms.

Training recorded by Nicolas Schmaltz and copyright reserved to Conviso Application Security S/A.

Lesson 12 Contents:

Insecure deserialization typically leads to remote code execution. Even if it doesn't, it can be used to carry out attacks, including replay attacks, injection, and privilege elevation.

Discover Conviso Platform!

Resources

By exploring our content, you'll find resources that will enhance your understanding of the importance of a Security Application Program.

Conviso Blog: Explore our blog, which offers a collection of articles and posts covering a wide range of AppSec topics. The content on the blog is primarily in English.

Conviso's YouTube Channel: Access a wealth of informative videos covering various topics related to AppSec. Please note that the content is primarily in Portuguese.