Eccouncil 312-39 Exam - Topic 9 Question 28 Discussion
Wesley is an incident handler in a company named Maddison Tech. One day, he was learning techniques for eradicating the insecure deserialization attacks.What among the following should Wesley avoid from considering?
C) Allow serialization for security-sensitive classes
A) Deserialization of trusted data must cross a trust boundary
B) Understand the security permissions given to serialization and deserialization
D) Validate untrusted input, which is to be serialized to ensure that serialized data contain only trusted classes
Janine
8 months agoDion
9 months agoHarris
9 months agoLouis
9 months agoBreana
9 months agoBernadine
9 months agoLouis
9 months agoNorah
9 months agoPaul
9 months agoHui
9 months agoJerrod
9 months agoMajor
9 months agoVerda
9 months ago