RSS
Dangerous hole in Apache Commons Text – like Log4Shell all over again
Naked Security
8 months on, US says Log4Shell will be around for “a decade or longer”
Horde of miner bots and backdoors leveraged Log4J to attack VMware Horizon servers
Threat Research
Log4Shell: How the Attackers’ Faces Have Changed Over Time
Security Operations
Log4Shell: No Mass Abuse, But No Respite, What Happened?
Log4Shell-like security hole found in popular Java SQL database engine H2
S3 Ep64: Log4Shell again, scammers keeping busy, and Apple Home bug [Podcast + Transcript]
FTC threatens “legal action” over unpatched Log4j and other vulns
Log4Shell vulnerability Number Four: “Much ado about something”