News

Why The Java Deserialization Bug Is A Big Deal Millions of app servers are potentially open to compromise due to how they handle serialized Java apps, researchers say.
While the Java and .NET deserialization issues were limited to third-party libraries, having deserialization issues impact Ruby itself greatly increases a hacker's attack surface.
Java Deserialization: Running Faster Than a Bear Software components that were once good can sour instantly when new vulnerabilities are discovered within them. When that happens, the bears are ...
PayPal has fixed a serious vulnerability in its back-end management system that could have allowed attackers to execute arbitrary commands on the server and potentially install a backdoor.
Java Serialization Vulnerability Example This project demonstrates a common security vulnerability in Java applications: Insecure Deserialization. It shows how an attacker can exploit deserialization ...
PayPal has fixed a serious vulnerability in its back-end management system that could have allowed attackers to execute arbitrary commands on the server and potentially install a backdoor.
Java Deserialization Flaw Patched in 19 Products Among the most noteworthy aspects of the April CPU is the CVE-2016-1000031 Java flaw that is being patched across 19 Oracle products.