sans.org – There are a lot of articles about configuring authentication and authorization in Java web.xml files. Instead of rehashing how to configure roles, protect web resources, and set up different types of…

Tweeted by @SANSInstitute https://twitter.com/SANSInstitute/status/1265394816134852608

SANS Institute | Seven Security (Mis)Configurations in Java web.xml Files