← Back to feed
research PortSwigger Research

Hiding payloads in Java source code strings

PortSwigger Research Oracle

In this post we'll show you how Java handles unicode escapes in source code strings in a way you might find surprising - and how you can abuse them to concea...

Read the full story PortSwigger Research →

Related Coverage

research 21st September – Threat Intelligence Report Check Point Research · Sep 21 research SAML: A fractal of bad design Trail of Bits · Sep 21 research Group Policy hijacked: PAYLOAD ransomware weaponizes Active Directory GPO Kaspersky Securelist · Sep 21