Java-Deserialization-Cheat-Sheet

The cheat sheet about Java Deserialization vulnerabilities (by GrrrDog)

Java-Deserialization-Cheat-Sheet Alternatives

Similar projects and alternatives to Java-Deserialization-Cheat-Sheet

NOTE: The number of mentions on this list indicates mentions on common posts plus user suggested alternatives. Hence, a higher number means a better Java-Deserialization-Cheat-Sheet alternative or higher similarity.

Java-Deserialization-Cheat-Sheet reviews and mentions

Posts with mentions or reviews of Java-Deserialization-Cheat-Sheet. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2022-02-20.
  • A Study Notes of Exploit Spring Boot Actuator
    4 projects | /r/TutorialBoy | 20 Feb 2022
    It can be known that this variable is used to specify the location of the bootstrap configuration file. The supported file formats include ymland properties. Friends who are familiar with Java security may think that the parsing of yml will have a problem of deserialization. If the content of the configuration file is here, we If you can control it, there is a possibility that it can be exploited.