
Log4j /Log4Shell
- ManieshNeupane
- Dec 15, 2021
- 1 min read
Updated: Dec 16, 2021
What Is Log4j? Log 4 j is an error message logging in applications widely used by the java library. Log 4 j is used by enterprises using software applications and it also includes customs applications developed in-house by the businesses according to their specific work structures and forms part of many clouds computing services. About Log4j Vulnerability Log4j vulnerability comes with CVE-2021-44228 with a CVS of 10 on 10 and since last week the alert has been issued by various cyber security agencies that a remote execution flaw in Log4j was already being exploited in the wild. • Is Your Application Is Affected By The Log4j Flaw? Log4j is widely used by the java library so the vulnerability may impact a wide range of software and services from major vendors. Any device that is exposed to the internet is at risk if it is running on Apache Log4j, version 2.0 to 2.14.1. • How Widely Is The Log4j Flaw Being Exploited? Many Security experts have already warned that thousands of attempts have already been executed by hackers to find vulnerable devices. Over 40% of corporate networks have been already targeted.
コメント