Eccouncil 312-39 Exam - Topic 9 Question 28 Discussion
Wesley is an incident handler in a company named Maddison Tech. One day, he was learning techniques for eradicating the insecure deserialization attacks.What among the following should Wesley avoid from considering?
C) Allow serialization for security-sensitive classes
A) Deserialization of trusted data must cross a trust boundary
B) Understand the security permissions given to serialization and deserialization
D) Validate untrusted input, which is to be serialized to ensure that serialized data contain only trusted classes
Janine
10 months agoDion
10 months agoHarris
10 months agoLouis
11 months agoBreana
11 months agoBernadine
11 months agoLouis
11 months agoNorah
11 months agoPaul
11 months agoHui
11 months agoJerrod
11 months agoMajor
11 months agoVerda
11 months ago