Home / Jul 28, 2026 / Story
0
#6 BleepingComputer general July 27, 2026 at 23:49 UTC

Hackers target US firms in FastJson RCE zero-day attacks

By Bill Toulas

AI Summary

Threat actors are actively exploiting a zero-day remote code execution vulnerability in FastJson, a widely-used open-source Java JSON parsing library, targeting US firms without requiring user interaction or elevated privileges. The unauthenticated RCE nature of the flaw makes it particularly dangerous for any Java application using FastJson for input parsing.

Relevance score: 83.0/100

# More from July 28