#6
BleepingComputer
general
July 27, 2026 at 23:49 UTC
Hackers target US firms in FastJson RCE zero-day attacks
By Bill Toulas
AI Summary
Threat actors are actively exploiting a zero-day remote code execution vulnerability in FastJson, a widely-used open-source Java JSON parsing library, targeting US firms without requiring user interaction or elevated privileges. The unauthenticated RCE nature of the flaw makes it particularly dangerous for any Java application using FastJson for input parsing.
Relevance score: 83.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →