Log4Shell: How It’s Exploited and Mitigating DamageRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC in the wildCVE-2021-4422860
Log4Shell attacks began two weeks ago, Cisco and Cloudflare sayThe Record·Jan 18, 00:00 UTC · Jan 18, 2023Ransomware in the wild60
Most attackers lose interest in Log4ShellThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Exploit / PoC in the wildCVE-2021-4422860
Log4Shell attacks expand to nation-state groups from China, Iran, North Korea, and TurkeyThe Record·Jan 18, 00:00 UTC · Jan 18, 2023Threat actor in the wildCVE-2021-4422860
Threat actor target Ubiquiti network appliances using Log4Shell exploitsThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Threat actor in the wild60
Cynet Log4Shell Webinar: A Thorough - And ClearThe Hacker News·Feb 4, 08:34 UTC · Feb 4, 2022Vulnerability in the wild60
Night Sky ransomware operators exploit Log4Shell to target VMware Horizon serversSecurity Affairs·Jan 11, 14:52 UTC · Jan 11, 2022RansomwareCVE-2021-44228CVE-2021-26084CVE-2021-3447360
Threat actor targets VMware Horizon servers using Log4Shell exploitsSecurity Affairs·Jan 7, 15:48 UTC · Jan 7, 2022Threat actorCVE-2021-4422860
Answering Log4ShellKaspersky Securelist·Dec 21, 10:55 UTC · Dec 21, 2021Vulnerability in the wildCVE-2021-44228CVE-2021-45046CVE-2021-4510560
How would zero trust prevent a Log4Shell attack?Help Net Security·Jan 27, 00:00 UTC · Jan 27, 2022Exploit / PoC60
Conti ransomware gang exploits Log4Shell bug in its operationsSecurity Affairs·Dec 17, 21:44 UTC · Dec 17, 2021RansomwareCVE-2021-4422860
CISA, US Coast Guard warn of Log4Shell attacks after 130GB data breach in MayThe Record·Jan 12, 00:00 UTC · Jan 12, 2023Data breachCVE-2021-44228CVE-2022-2295460
Iran-linked Mercury APT exploited Log4Shell in SysAid Apps for initial accessSecurity Affairs·Aug 26, 17:19 UTC · Aug 26, 2022Exploit / PoCCVE-2021-4422860
Threat actors continue to exploit Log4Shell in VMware Horizon SystemsSecurity Affairs·Jun 24, 15:08 UTC · Jun 24, 2022Threat actorCVE-2021-44228CVE-2022-2295460
Log4Shell-like Critical RCE Flaw Discovered in H2 Database ConsoleThe Hacker News·Jan 12, 07:56 UTC · Jan 12, 2022VulnerabilityCVE-2021-4239260
Unauthenticated RCE in H2 Database Console is similar to Log4ShellSecurity Affairs·Jan 8, 19:53 UTC · Jan 8, 2022VulnerabilityCVE-2021-42392CVE-2021-4422860
Multiple Nation-State actors are exploiting Log4Shell flawSecurity Affairs·Dec 16, 12:24 UTC · Dec 16, 2021Threat actor in the wildCVE-2021-4422860
Log4Shell: A new fix, details of active attacks, and risk mitigation recommendationsHelp Net Security·Dec 15, 00:00 UTC · Dec 15, 2021Ransomware in the wildCVE-2021-44228CVE-2021-4504660
US CISA orders federal agencies to fix Log4Shell by December 24thSecurity Affairs·Dec 14, 15:54 UTC · Dec 14, 2021Exploit / PoC in the wildCVE-2021-4422860
Impact of Log4Shell Bug Was Overblown, Say ResearchersInfosecurity Magazine·Dec 19, 10:30 UTC · Dec 19, 2023Ransomware60
CISA director: Log4Shell has not resulted in 'significant' government intrusions yetThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Exploit / PoC60
Iranian hackers use Log4Shell to mine crypto on federal computer systemCyberScoop·Nov 16, 23:37 UTC · Nov 16, 2022Ransomware in the wild60
Attackers still exploit Log4Shell on VMware Horizon servers, CISA warnsHelp Net Security·Jun 24, 00:00 UTC · Jun 24, 2022Advisory in the wildCVE-2021-44228CVE-2022-2295460
Log4Shell exploitation: Which applications may be targeted next?Help Net Security·Apr 5, 00:00 UTC · Apr 5, 2022RansomwareCVE-2022-22965CVE-2021-44228160
Open-source software holds the key to solving Log4Shell-like problemsHelp Net Security·Dec 22, 00:00 UTC · Dec 22, 2021Exploit / PoC in the wild60
TellYouThePass ransomware resurges and exploits Log4Shell flawSecurity Affairs·Dec 19, 14:08 UTC · Dec 19, 2021RansomwareCVE-2021-4422860
Lazarus exploit Log4Shell vulnerability to deliver novel RAT malwareHelp Net Security·Dec 12, 00:00 UTC · Dec 12, 2023VulnerabilityCVE-2021-4422860
Initial Access Broker Involved in Log4Shell Attacks Against VMware Horizon ServersThe Hacker News·Jan 29, 06:06 UTC · Jan 29, 2022Ransomware in the wild60
Researchers Warn of New Log4ShellInfosecurity Magazine·Jan 7, 09:26 UTC · Jan 7, 2022VulnerabilityCVE-2021-4239260
Log4Shell is a dumpster fire that should have been avoidedHelp Net Security·Dec 23, 00:00 UTC · Dec 23, 2021Exploit / PoCCVE-2021-4422860
CISA, Five Eyes issue guidance meant to slow Log4Shell attacksCyberScoop·Dec 22, 17:03 UTC · Dec 22, 2021Ransomware in the wild60
Week in review: Log4Shell updates, Kronos ransomware attack, unused identities threatHelp Net Security·Dec 19, 00:00 UTC · Dec 19, 2021Ransomware in the wildCVE-2021-44228CVE-2021-4389060
Hackers exploit Log4Shell to drop Khonsari RansomwareSecurity Affairs·Dec 14, 20:57 UTC · Dec 14, 2021RansomwareCVE-2021-4422860
CISA adds Log4Shell flaw to the Known Exploited Vulnerabilities CatalogSecurity Affairs·Dec 13, 13:44 UTC · Dec 13, 2021Exploit / PoC in the wildCVE-2021-44228CVE-2021-44515CVE-2021-44168+10 CVEs60
Log4Shell was in the wild at least nine days before public disclosureSecurity Affairs·Dec 13, 09:47 UTC · Dec 13, 2021Exploit / PoC in the wildCVE-2021-22448CVE-2021-4422860
Quebec shuts down thousands of sites as disclosure of the Log4Shell flawSecurity Affairs·Dec 12, 20:27 UTC · Dec 12, 2021Exploit / PoCCVE-2021-4422860
Logout4Shell, a vaccine for Log4Shell Apache Log4j RCESecurity Affairs·Dec 11, 10:05 UTC · Dec 11, 2021VulnerabilityCVE-2021-4422860
Log4Shell, ProxyLogon and Atlassian bug top CISA\'s list of routinely exploited vulnerabilities in 2021The Record·Jan 12, 00:00 UTC · Jan 12, 2023Vulnerability in the wildCVE-2020-1472CVE-2018-13379CVE-2019-11510+3 CVEs60