skip to main
|
skip to sidebar
(Slightly) Random Broken Thoughts
No posts.
Show all posts
No posts.
Show all posts
Home
Subscribe to:
Posts (Atom)
Contact
sami.koivu (a) gmail.com
@samikoivu
(twitter)
Blog Archive
▼
2011
(7)
▼
June
(2)
Java 6 update 26 is out
Inflated Java Malware Infection Rates
►
March
(1)
Oracle Java Applet Clipboard Injection Remote Code...
►
February
(2)
Java JFileChooser Programmatic Manipulation Vulner...
Trusted Method Chaining for Network Interface deta...
►
January
(2)
Trusted Method Chaining to a System.exit
Hazards of Duke
►
2010
(13)
►
October
(1)
Java 6 Update 22 is out
►
August
(1)
Breaking Defensive Serialization
►
July
(1)
Why Complex+Powerful is a bad combination for secu...
►
April
(5)
Mutable InetAddress Socket Policy Violation (ZDI-1...
Symantec on ZDI-10-051 and ZDI-10-056
Java RMIConnectionImpl Deserialization Privilige E...
Java Trusted Method Chaining (CVE-2010-0840/ZDI-10...
Java Security Updates
►
March
(2)
Java 6 Update 19
"Reverse engineering" Java class magic errors
►
February
(1)
Java SE Security - Part III (Keys)
►
January
(2)
2009 In Review
Java "final" and security
►
2009
(20)
►
December
(2)
FilePermission class leaks sensitive information
Defensive Copying - How not to do it
►
November
(1)
Protection Against Finalizer attack
►
October
(1)
com.sun.corba.se.impl.orbutil.ObjectUtility
►
August
(4)
Appease the serialization gods (and other interest...
java.net.Proxy and (Im)mutability
JDK13Services - Thanks!
No Anniversary for JDK13Services
►
July
(3)
Java SE Security - Part II (Immutability)
Pwnie Nomination (Pwnie for Best Client-Side Bug)
Java security bugs revisited
►
May
(2)
WORA? WOOE.
Apologies to Mr. Schneier
►
April
(3)
Timeline of Sun Microsystems fixing Java security ...
Descrição em português do vírus wwww.sl (summary o...
DNS spoofing incident
►
February
(4)
Java SE Security - Part I
Correction on how Sun fixed the Calendar bug
FileSystemView allows read access to the filesyste...
Side-channel attack
►
2008
(3)
►
December
(1)
Calendar bug
►
May
(2)
FileSystemView allows read access to the filesyste...
Security is hard
►
2007
(4)
►
May
(1)
Minimizing Java bytecode size
►
March
(1)
Java 6 == NoClassDefFoundError
►
January
(2)
Four basic ways to avoiding annoying bugs
Obfuscating by overloading method and field names
Interesting Stuff
Nibble Security
"No More Free Bugs" Initiatives
3 months ago
cr0 blog
Javocalypse
1 year ago
About Me
Sami Koivu
View my complete profile