Curious captives

Using application functionality to exploit insecure deserialisation


Listen Later

This application uses a serialisation-based session mechanism and a certain feature invokes a dangerous method on data provided in a serialised object.

...more
View all episodesView all episodes
Download on the App Store

Curious captivesBy