Posted on February 02nd, 2009 in Java Security, Security
Reviewing Java source code can pose a challenge for a security auditor, as methods used to exploit programs in C or C++, namely memory corruption bugs, are mitigated by Java itself, which hides the details of memory management from the programmer. This same tendency to hide implementation details with a layer of abstraction leads to [...]