Secure Coding in Java

Secure Coding in Java

1h 2mBeginner2025-08-21

Authors

Frank P Moley III

Frank P Moley III

Senior Principal Engineer at Catch&Release

Course details

In this course, Frank P Moley III—Principal Software Architect at Vertex, Inc.—shows you how to bring secure coding to the Java ecosystem. Dive into the most common security vulnerabilities that routinely appear and develop your understanding of how to mitigate and prevent these vulnerabilities when writing software. Plus, examine the process for building out a complete secure software lifecycle.

Learning objectives
List ways to ensure you are writing more secure Java code.
Implement strategies to defend against many OWASP Top 10 attack vectors.
Describe the secure lifecycle of Java applications.

Skills covered

Programming LanguagesSoftware DevelopmentOne-Off

Concepts

Introduction

  • Securing Java code
  • What you need to know

Injection Attacks

  • Injection attacks
  • Prevent SQL injection
  • Other injection attacks
  • Challenge - Refactor Java code susceptible to injection attacks
  • Solution - Refactor Java code susceptible to injection attacks

Sensitive Data Attacks

  • Sensitive data leak
  • Log message leaks
  • Exception leaks
  • Challenge - Prevent sensitive data leaks
  • Solution - Prevent sensitive data leaks

Java Access Attacks

  • Class and package accessibility
  • Mutability
  • Extensibility

Additional Topics

  • Build vulnerabilities
  • Container build - Best practices
  • Input validation
  • Serialization

Conclusion

  • Next Steps
40,000 Toman