1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Deserialization Bug in PayPal App Allowed Code Execution

Discussion in 'SecurityWeek' started by RSS, Jan 27, 2016.

  1. RSS

    RSS New Member Member

    PayPal has addressed a serious remote code execution vulnerability caused by a Java deserialization bug disclosed last year, and shared some recommendations for security practitioners based on the lessons learned in the process of dealing with the issue.

    Deserialization of Untrusted Data

    read more

    [​IMG] [​IMG] [​IMG] [​IMG] [​IMG] [​IMG] [​IMG] [​IMG]

    Continue reading...

Share This Page