# javaweb-sec/javaweb-sec

Repository: https://github.com/javaweb-sec/javaweb-sec
Canonical: https://ross.abutalabs.com/products/javaweb-sec
Language: Java
License: NOASSERTION
License Family: other
Last push: 2026-05-31T15:00:24+00:00

## Health v2 (maintenance only)
Score: 70/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 85, release rhythm 35, longevity 100
- inputs: {"age_days": 1990, "days_push": 94, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: no_releases, no_license
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1083, forks 181 (observed 2026-08-28T04:03:31.194589+00:00)

## What it is
An open-source knowledge base and training project summarizing Java Web security topics, published as a GitBook at javasec.org. It explains complex Java security techniques (vulnerabilities and attacks on Java web applications) in a clear, accessible way.

## Use cases
- learn java web security from scratch
- understand java deserialization vulnerabilities
- study common java web attack techniques
- find java security training material
- reference for java code auditing
- learn how to exploit java web applications

## When to choose
- you want a free, structured introduction to Java security concepts
- you need reference material on Java-specific vulnerabilities and exploitation
- you prefer learning in Chinese with community discussion channels

## When to avoid
- you need a runnable security scanning or testing tool rather than educational content
- you need English-language documentation
- you need guaranteed-correct, peer-reviewed material (authors note possible errors)

## Facets
- artifact type: learning-resource
- maturity: active
- function: security, penetration-testing, documentation
- domain: security, tutorials, web-development, developer-tools
- platform: jvm
- tags: java-web-security, vulnerability-research, exploitation, free-training, gitbook, chinese-language

## Member repositories
- javaweb-sec/javaweb-sec (main) score 70

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:03:31.194589+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T06:51:10.955169+00:00, confidence not recorded.
  - readme: https://github.com/javaweb-sec/javaweb-sec (fetched 2026-08-28T04:03:31.194589+00:00, sha 6d242319180f)
- Data as of 2026-08-30T08:39:29.467469+00:00.
