CMNatic's Ramblings Recent UK Infosec Graduate, former healthcare worker, Danny Phantom wannabe
Posts with the tag Deserialization, :

Exploiting Java Deserialization Windows Demo

The following example is a write-up of an example of payload execution that I performed for a University assignment. I have also created a TryHackMe room based upon this. I replicate a java application and the serialization process; ultimately being able to perform RCE on Windows 10.