This course explains how testers and developers can determine if their web applications are vulnerable to the A8:2017 Insecure Deserialization vulnerability identified by the Open Web Application Security Project (OWASP). It also explains how to protect web applications against this vulnerability. In this course, you will learn how to test your application for insecure deserialization and you will learn how to protect your application against insecure deserialization.
On successful completion of this course, learners should have the knowledge and skills to:
- Determine if a Web application is vulnerable to Insecure Deserialization
- Explain how to protect the application against this security vulnerability
If you would like to provide feedback for this course, please e-mail the NICCS SO at NICCS@hq.dhs.gov.