paint-brush
JDWP is a Security Risk and Here's Whyby@shai.almog
121 reads

JDWP is a Security Risk and Here's Why

by Shai Almog6mOctober 15th, 2021
Read on Terminal Reader
Read this story w/o Javascript
tldt arrow

Too Long; Didn't Read

Don’t use remote debugging unless you REALLY have to and then make sure no one can access your system… Even under those circumstances be vigilant and tunnel your connections via SSH. Be careful with conditional breakpoints and other similarly elaborate debugger features. They are a recipe for disaster in such situations. Be aware that you’re effectively giving every user who has access to the server the keys to the kingdom. Not just the source and the DB, access to all the encrypted data too such as passwords!

Company Mentioned

Mention Thumbnail
featured image - JDWP is a Security Risk and Here's Why
Shai Almog HackerNoon profile picture
Shai Almog

Shai Almog

@shai.almog

Author, DevRel, Blogger, Open Source Hacker, Java Rockstar, Conference Speaker, Instructor and Entrepreneur

About @shai.almog
LEARN MORE ABOUT @SHAI.ALMOG'S
EXPERTISE AND PLACE ON THE INTERNET.
L O A D I N G
. . . comments & more!

About Author

Shai Almog HackerNoon profile picture
Shai Almog@shai.almog
Author, DevRel, Blogger, Open Source Hacker, Java Rockstar, Conference Speaker, Instructor and Entrepreneur

TOPICS

THIS ARTICLE WAS FEATURED IN...

Permanent on Arweave
Read on Terminal Reader
Read this story in a terminal
 Terminal
Read this story w/o Javascript
Read this story w/o Javascript
 Lite
Also published here
Aiois
Au-e
Seanmalhi