
FastJson RCE zero-day exploited in US firms
Hackers are exploiting a zero-day vulnerability in the FastJson Java library to execute remote code on US-based systems without authentication or elevated privileges.
16 stories tagged with this topic.

Hackers are exploiting a zero-day vulnerability in the FastJson Java library to execute remote code on US-based systems without authentication or elevated privileges.

Arelion's 2026 report identifies the Aisuru botnet as the source of 33% of DDoS traffic on its AS1299 backbone, highlighting the growing scale and economic impact of compromised consumer devices on global network defense.

The UK will treat Amazon Web Services, Microsoft, Google Cloud and Oracle as critical third parties whose failures could destabilise banking, granting regulators new enforcement powers over cloud services used by financial institutions.

A campaign targeting Python developers has been distributing malicious PyPI packages that compromise Telegram bot servers, allowing attackers to read arbitrary files since November 2025.

Claranet has acquired UK-based managed services provider Six Degrees, creating a larger group with deeper capabilities in cloud, cybersecurity, and hybrid infrastructure. The deal reflects ongoing consolidation in the European managed services market as providers seek scale to meet rising customer demands for integrated, secure IT operations.

Nintendo of America confirmed a data breach involving internal employee survey data from TinyPulse, a third-party platform owned by WebMD Health Services. The incident, claimed by the Shadowbyt3$ extortion group, allegedly includes personal employee details, though Nintendo denies customer or financial data exposure.

The Gentlemen ransomware operation uses at least eight variants of a custom EDR-killing utility, alongside three external tools, to bypass security products from 48 vendors before deploying ransomware or stealing data.

Netskope has introduced a managed services partner program and an integration with AWS Bedrock AgentCore to streamline SASE deployments and AI agent governance, addressing operational complexity for MSPs and enterprises.

Cloudflare's Project Galileo, now protecting over 3,400 civil society websites, publishes its inaugural annual report on cyber threats facing journalists, human rights defenders, and nonprofits. The data shows these groups face attacks at rates up to seven times higher than other users, with DDoS and phishing as top threats.

Cloudflare has introduced real-time threat intelligence integration into its Web Application Firewall (WAF), allowing security teams to automate protections against specific threat actors and targeted industries using new cf.intel fields.

OpenText's $121 million investment in Ireland targets sovereign AI and multi-agent orchestration for regulated industries, creating 400 jobs across Cork and Galway. The move reflects growing demand for compliant AI infrastructure in Europe.

CISA has ordered federal agencies to patch a maximum-severity vulnerability in the Widget Factory Joomla Content Editor (JCE) plugin, tracked as CVE-2026-48907, which is being actively exploited. The flaw allows unauthenticated attackers to execute code on Joomla sites using the plugin.

Google has been positioned as a Leader in the 2026 IDC MarketScape for SIEM, praised for its AI integration, threat intelligence, and search performance. The assessment highlights Google’s vertical AI stack and Mandiant’s curated detection content as key differentiators.

The sale of bug.io for $30,000 on Atom.com underscores the ongoing premium placed on concise, industry-specific .io domains, particularly in cybersecurity and developer tooling. The transaction reflects broader trends in domain investing, where scarcity and brandability drive valuations.

Symantec researchers discovered DragonForce ransomware using custom Go-based malware, Backdoor.Turn, to abuse Microsoft Teams TURN relays, masking C2 communications within trusted infrastructure during a December 2025 attack on a U.S. services company.

CENTR supports the EU’s cybersecurity overhaul but warns that new supplier risk frameworks and broad definitions could impose excessive burdens on country-code domain registries without clear security benefits.