SECURITYBLEEPING COMPUTER
Hackers target US firms in FastJson RCE zero-day attacks
Hackers are exploiting a vulnerability in the FastJson open-source Java library to launch remote code execution (RCE) attacks against US firms. The attacks allow remote code execution without requiring user interaction or elevated privileges.
Mentioned
Related Signal
Adjacent reporting
- Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Available
- VS Code zero-day lets hackers steal GitHub tokens in one click
- Hackers exploit RCE flaws in Qinglong task scheduler for cryptomining
- Microsoft patches Exchange Server zero-day exploited in attacks
- Lazarus Deploys RemotePE Memory-Only RAT Against Financial and Crypto Firms