RSS
Naked Security
Apache
Apache Commons Text
CVE-2022-42889
Log4J
Log4shell
string interpolation
Dangerous hole in Apache Commons Text – like Log4Shell all over again
CSRB
DHS
Security.txt
8 months on, US says Log4Shell will be around for “a decade or longer”
Security Operations
Exploit
Featured
Threat Research
vulnerability
Log4Shell: How the Attackers’ Faces Have Changed Over Time
MTR
Log4Shell: No Mass Abuse, But No Respite, What Happened?
Apple
Instagram
S3 Ep64: Log4Shell again, scammers keeping busy, and Apple Home bug [Podcast + Transcript]
Equifax
ftc
patching
FTC threatens “legal action” over unpatched Log4j and other vulns
CVE-2021-44228
CVE-2021-44832
Java
Patch
Log4Shell vulnerability Number Four: “Much ado about something”
Sophos Managed Threat Response (MTR)
Sophos MTR
Log4Shell Response and Mitigation Recommendations
SophosLabs Uncut
Inside the code: How the Log4Shell exploit works