New RCE Deserialization Vulnerability (CVE-2020-9484) in Apache Tomcat.
This document will open shortly, there is no need for you to do anything.
Apostolos drives the research and the design of the security features of Waratek’s RASP container. Before starting his journey in Waratek in 2014, Apostolos worked in Oracle for 2 years focusing on Destructive Testing on the whole technology stack of Oracle and on Security Testing of the Solaris operating system. Apostolos has more than 10 years of experience in the software industry and holds an MSc in Computer Science from the University of Birmingham.Apostolos is acknowledged by Oracle for submitting two Java Deserialization vulnerabilities that were fixed in the Oracle January 2018 CPU and is featured on Google’s Vulnerability Reward Program Hall of Fame.
Waratek provides patented next-gen WAF, RASP and legacy modernization solutions delivered through Waratek ARMR, the only comprehensive and scalable application security platform on the market. ARMR enables real-time protection and threat remediation for known and unknown vulnerabilities – without false positives or impacts to application performance. Using patented technology, ARMR eliminates the need for source code changes, excessive tuning, or application downtime.
Waratek is headquartered in Dublin, Ireland with Sales and Operations Support in Atlanta, Georgia; New York City and across Europe.