Description
Detects Java remote method invocation responses carrying serialized object streams. Serialized Java objects in network traffic are a deserialization attack surface, so this signature flags responses that could carry crafted objects into a trusting client.
No cross-references or related blog posts found for this signature.