• NetSPI Home
  • Our Vision
  • Expert Services
  • Industry Solutions
NetSPI Blog - Risk, Compliance, Sceurity
  • authors
  • archive
  • contact us

Entries by Khai Tran

NetsPWN: Assessment Services

Patching Java Executables – The Easy Way

Khai Tran

May 16th, 2013

      The process of patching a Java executable (.jar files) without the original source code has been known for a while. As I know of, currently there are two ways of doing it: Decompile the executable > Import …
READ POST

NetsPWN: Assessment Services

Tool release: AMF Deserialize Burp plugin

Khai Tran

January 9th, 2013

Action Message Format (AMF) is one of the communication protocols used to exchange messages between Flash client and server; the others are RTMP and XML. BurpAMFDSer is another Burp plugin that will deserialize/serialize AMF request and response to and from …
READ POST

NetsPWN: Assessment Services

Pentesting Java Thick Applications with Burp JDSer

Khai Tran

October 8th, 2012

Recently I stumbled upon a Java Rich Client pentest project. Fortunately, the communication was made via HTTP, so it was possible to manipulate requests and response with our favorite tool, Burp. Unfortunately, the app has been transmitting data in serialized …
READ POST

search

Follow Us

Follow us on Linkedin Follow us on Twitter Follow us on Our Blog

Categories

  • Compliance
  • NetsPWN: Assessment Services
  • Sage Advice
  • Security Industry

Resources

pci-audit-mistakes-white-paper

Tags

PCI/PA-DSS Compliance | penetration testing | Database Hacking | healthcare | pci compliance | hacking | NetsPWN: Assessment Services | HIPAA | PCI-DSS | PA-DSS | vulnerability assessment | HITRUST | Application Security Risks | Mobile Device Security | Database Security | HITECH | PCI SSC | CSF | Information Security | code reviews

Solutions

Services

About NetSPI

Contact Us

  • CorrelatedVM™
  • DEA EPCS
  • Financial
  • Healthcare
  • Mobile
  • Retail
  • Technology
  • Strategic Security Services
  • Vulnerability Management
  • Risk Analysis
  • PCI DSS / PA-DSS
  • IT Audit
  • Healthcare / DEA EPCS
  • Application Security
  • Network/Infrastructure Security
  • Penetration Testing
  • Why NetSPI
  • Management
  • Our Approach
  • Certifications
  • Partners
  • Careers

800 Washington Ave. N.
Suite 670
Minneapolis, MN 55401

612.465.8880 Phone
612.455.6988 Fax

info@netspi.com

Copyright ©2012 NetSPI Inc. All rights reserved