Log in
Confluence
  • Spaces
  • Hit enter to search
  • Help
    • Online Help
    • Keyboard Shortcuts
    • Feed Builder
    • What’s new
    • About Confluence
  • Log in

SEI CERT Oracle Coding Standard for Java
  • Pages

Space shortcuts

  • Dashboard
  • Secure Coding Home
  • Android
  • C
  • C++
  • Java
  • Perl
Browse pages
  • See content from all spaces
  • Popular Labels
  • All Labels
Labelled content
search
attachments
weblink
advanced
Overview
Content Tools
Related Labels
  • incomplete
  • exportable-c++
  • cwe-494
  • android
  • err
  • sec
  • jni
  • rule
  • cwe-732
  • cwe-754
  • dos
  • met
  • cwe-250
  • cwe-272
  • draft
  • capability
  • android-implementation-detail-java
  • lck
  • cwe-500
  • sensitive
  • dos-cc
  • obj
  • android-inapplicable
  • untrusted
  • normative
Every content item in this list is tagged with all the required labels:
  • deprecated-applet
  • deprecated-applet
  • not-android-applicable-java

To add a label to the list of required labels, choose '+ labelname' from Related Labels.
To remove a label from the required labels, choose '- labelname' from above.

  • Page:
    SEC04-J. Protect sensitive operations with security manager checks
    Oct 16, 2009 • Dhruv Mohindra
    • capability
    • sec
    • android-inapplicable
    • rule
    • not-android-applicable-java
    • android-implementation-detail-java
    • analyzable
    • deprecated-applet
  • Page:
    ENV01-J. Place all security-sensitive code in a single JAR and sign and seal it
    Sept 23, 2009 • Dhruv Mohindra
    • draft
    • cwe-494
    • android-inapplicable
    • env
    • rule
    • not-android-applicable-java
    • android-implementation-detail-java
    • analyzable
    • deprecated-applet
  • Page:
    ENV00-J. Do not sign code that performs only unprivileged operations
    Aug 06, 2009 • Dhruv Mohindra
    • draft
    • android-inapplicable
    • env
    • rule
    • not-android-applicable-java
    • android-implementation-detail-java
    • analyzable
    • deprecated-applet
  • Page:
    SER04-J. Do not allow serialization and deserialization to bypass the security manager
    Jul 09, 2008 • Dhruv Mohindra
    • sensitive
    • draft
    • ser
    • android-inapplicable
    • rule
    • not-android-applicable-java
    • android-implementation-detail-java
    • analyzable
    • deprecated-applet
  • Page:
    ENV03-J. Do not grant dangerous combinations of permissions
    Jul 06, 2008 • Dhruv Mohindra
    • cwe-732
    • android-inapplicable
    • least-privilege
    • env
    • rule
    • not-android-applicable-java
    • android-implementation-detail-java
    • deprecated-applet
  • Powered by Atlassian Confluence 9.2.13
  • Printed by Atlassian Confluence 9.2.13
  • Report a bug
  • Atlassian News
Atlassian

Carnegie Mellon University
Software Engineering Institute
4500 Fifth Avenue
Pittsburgh, PA 15213-2612
412-268-5800

Contact Us
  • Office Locations|
  • Additional Sites Directory|
  • Legal|
  • Privacy Notice|
  • CMU Ethics Hotline|
  • www.sei.cmu.edu

©2025 Carnegie Mellon University

{"serverDuration": 72, "requestCorrelationId": "e19657b112143ff4"}