Java serialization - The gift that keeps on taking (Part 1)

By Steve Poole on March 11, 2022 java

6 minute read time

Log4Shell impels us to review the reasons Java needs serialisation, how to use it safely, and what other options exist. Here in part 1, we examine design.
Read More...

New Sonatype Scan Gradle Plugin

By Guillermo Varela on February 28, 2020 Gradle

3 minute read time

The newest free plugin in the Sontaype toolbox is a Gradle plugin to scan, evaluate, and audit Gradle project dependencies. It is available now on GitHub.
Read More...

Continuous Integration in Pipeline as Code Environment with Jenkins, JaCoCo, Nexus and SonarQube

By Rahul Vishwakarma on January 17, 2018 github

5 minute read time

The setup for a Continuous integration pipeline... this is for mavenized Spring boot build with JaCoCo coverage reports and Sonar metrics.
Read More...

All Things Maven: A Discussion with Brian Fox

By Derek Weeks on November 08, 2017 Central

21 second read time

In this episode, you will hear the history of Maven Central, war stories, how Minecraft DDoSed the service, and plans for the future of Maven and Java 9.Special
Read More...

Struts2 Exploited Again.  Did Anyone Bother to Tell You?

By Brian Fox on March 10, 2017 oss

5 minute read time

This week I woke up to find several emails from Nexus Lifecycle indicating that the products in my portfolio were potentially vulnerable due to their.
Read More...

Improving Build Time of Java Builds on OpenShift

By Jorge Morales on March 08, 2017 java

14 minute read time

I will guide you through the process of speeding up Java Maven based builds, and will explain other options that can be taken to the ones that I’ll be showing.
Read More...

Nexus Repository 3.0: Most Frequently Asked Questions - Answered

By Jeffry Hesse on July 08, 2016 Nuget

8 minute read time

Nexus Repository 3.0 has hit the streets and is now available to all for free. What's changed? Check out the most frequently asked questions and see.
Read More...

Did You Wake Up to an Alert About the Java Deserialization Vulnerability?

By Brian Fox on November 13, 2015 oss

4 minute read time

This week I woke up to find several emails from Nexus Lifecycle indicating that the products in my portfolio were potentially vulnerable due to their.
Read More...

Nexus 3: New Milestone Release

By Jeffrey Wayman on February 12, 2015 artifact repository

2 minute read time

Nexus 3: New Milestone Release
Read More...