Secure coding in Java/JEE

Developed by Péter Nyilasy

  • Java security manager

  • Java language security (is Java a secure language?)

  • Java-specific issues

    • Numeric overflow, automatic conversions

    • Serialization, JPQL

  • SEI CERT Oracle Coding Standard for Java

  • Cryptography in Java


We assume that the developers attending the Java secdev course:

  • are familiar with the Java language and with JEE

  • understand the HTTP protocol, HTML and Javascript

  • are familiar with basic security features of an enterprise application (authentication, authorization, the concept of a session)

  • have Java (JDK) and a suitable IDE installed on their laptop (labs desktop)