I stumbled across this article here:
https://access.redhat.com/blogs/766093/posts/3135411
I see some ransomware among other things get distributed in this manner.
So that got me thinking, What about the library B4XSerializator? is it vulnerable to this attack? Does that library use whitelist/blacklist deserialization and class construction?
Just curious. Something to think about.
https://access.redhat.com/blogs/766093/posts/3135411
I see some ransomware among other things get distributed in this manner.
So that got me thinking, What about the library B4XSerializator? is it vulnerable to this attack? Does that library use whitelist/blacklist deserialization and class construction?
Just curious. Something to think about.