Serialization Filtering — Deserialization Vulnerability Protection in Java

Deserialization vulnerability protection in Java

Albin Issac
Nov 19, 2020 · 4 min read

Serialization/Deserialization

Serialization is a mechanism of converting the state of an in-memory object into a byte stream — e.g. storing the object into a file