Twenty Years of Java Security: Reading the Trend Through Two Decades of Black Hat Talks
Using representative Black Hat talks from 2002–2026 as a thread, this piece revisits how Java security research moved from the JVM sandbox and client-side exploitation to deserialization, JNDI, middleware, parsing differentials and runtime defense.