PayPal: Lessons Learned from the Java Deserialization Bug paypal-engineering.com/2016/… < now this is how things should be done
1
16
10
I don't understand this... "We found we were not exercising the vuln classes in apache-commons -> no immediate risk" @jeremiahg @paypaleng
3
Feb 1, 2016 · 7:44 PM UTC
2



