[Full-disclosure] Paper - Dissecting Java Server Faces for Penetration Testing

SecNiche Security Labs 0kn0ck at secniche.org
Fri Aug 26 03:18:05 BST 2011


Hi

This paper sheds light on the findings of security testing of Java
Server Faces. JSF has been widely used as an open source web framework
for developing efficient applications using J2EE. JSF is compared with
ASP.NET framework to unearth potential security flaws.

Link : http://www.secniche.org/jsf/dissecting_jsf_pt_aks_kr.pdf

Aditya K Sood
SecNiche Security Labs
http://www.secniche.org



Full-Disclosure is hosted and sponsored by Secunia.