CISA, FBI and NSA Publish Joint Advisory and Scanner for Log4j VulnerabilitiesThe Hacker News·Dec 29, 03:34 UTC · Dec 29, 2021VulnerabilityCVE-2021-45046CVE-2021-45105CVE-2021-44228+2 CVEs47
Log4Shell enumeration, mitigation and attack detection toolHelp Net Security·Dec 21, 00:00 UTC · Dec 21, 2021Exploit / PoC60
Apache Log4j Vulnerability — Log4Shell — Widely Under Active AttackThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2021Vulnerability in the wildCVE-2021-26084CVE-2021-4422860
Google: More than 35,000 Java packages impacted by Log4j vulnerabilitiesThe Record·Jan 18, 00:00 UTC · Jan 18, 2023VulnerabilityCVE-2021-44228CVE-2021-4504647
Log4j zero-day gets security fix just as scans for vulnerable systems ramp upThe Record·Dec 21, 00:00 UTC · Dec 21, 2022Exploit / PoCCVE-2021-4422860
UK's NHS Digital warns of an RCE in Okta Advanced Server Access clientSecurity Affairs·Feb 26, 10:45 UTC · Feb 26, 2022VulnerabilityCVE-2022-24295CVE-2021-45105CVE-2021-45046+1 CVEs47
How Log4Shell remediation interfered with organizations' cybersecurity readinessHelp Net Security·Feb 24, 00:00 UTC · Feb 24, 2022Exploit / PoC60
Pay attention to Log4j attacks, Dutch National Cybersecurity Centre warnsSecurity Affairs·Jan 22, 20:34 UTC · Jan 22, 2022RansomwareCVE-2021-44228CVE-2021-45046CVE-2021-4104+1 CVEs60
Week in review: Log4j new vulnerabilities, Microsoft patch bypass, 2022 e-commerce threat trendsHelp Net Security·Dec 26, 00:00 UTC · Dec 26, 2021VulnerabilityCVE-2021-44228CVE-2021-4044460
The Log4j saga: New vulnerabilities and attack vectors discoveredHelp Net Security·Dec 20, 00:00 UTC · Dec 20, 2021VulnerabilityCVE-2021-44228CVE-2021-45046CVE-2021-45105+1 CVEs47
Second Log4j Vulnerability (CVE-2021The Hacker News·Dec 18, 13:56 UTC · Dec 18, 2021Vulnerability in the wildCVE-2021-45046CVE-2021-4422860
Contrast CVE Shield aims to protect applications while security teams deploy patchesHelp Net Security·Jul 29, 00:00 UTC · Jul 29, 2026Vulnerability in the wildCVE-2021-44228160
Kernel-level container insights: Utilizing eBPF with Cilium, Tetragon, and SBOMs for securityHelp Net Security·Jun 18, 00:00 UTC · Jun 18, 2025VulnerabilityCVE-2021-4422835
North Korean hackers using Log4J vulnerability in global campaignThe Record·Dec 11, 20:36 UTC · Dec 11, 2023VulnerabilityCVE-2021-4422847
Two-Fifths of Log4j Apps Use Vulnerable VersionsInfosecurity Magazine·Dec 11, 09:30 UTC · Dec 11, 2023VulnerabilityCVE-2022-23307CVE-2022-23305CVE-2022-23302+2 CVEs60
New Log4j attacks target SolarWinds, ZyXEL devicesThe Record·Jan 17, 00:00 UTC · Jan 17, 2023RansomwareCVE-2021-3524760
Ukraine investigates multiple intrusion vectors in last week's website defacements, data wiper attacksThe Record·Jan 17, 00:00 UTC · Jan 17, 2023MalwareCVE-2021-3264860
Quarterly Report: Incident Response Trends in Q2 2022Cisco Talos·Jul 26, 14:03 UTC · Jul 26, 2022RansomwareCVE-2021-44228CVE-2021-4504660
Recovering from a cybersecurity earthquake: The lessons organizations must learnHelp Net Security·May 16, 00:00 UTC · May 16, 2022Vulnerability55
No Patch Available Yet for Critical SpringShell BugInfosecurity Magazine·Mar 31, 09:45 UTC · Mar 31, 2022VulnerabilityCVE-2010-162260
NHS Warns of Hackers Targeting Log4j Flaws in VMware HorizonThe Hacker News·Jan 8, 07:04 UTC · Jan 8, 2022Ransomware in the wildCVE-2021-4422860
Apache releases the third patch to address a new Log4j flawSecurity Affairs·Dec 18, 15:20 UTC · Dec 18, 2021Vulnerability in the wildCVE-2021-45046CVE-2021-44228CVE-2021-45105160
While attackers begin exploiting a second Log4j flaw, a third one emergesSecurity Affairs·Dec 18, 14:00 UTC · Dec 18, 2021RansomwareCVE-2021-45046CVE-2021-4422860
Hackers Exploit Log4j Vulnerability to Infect Computers with Khonsari RansomwareThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2021Ransomware in the wildCVE-2021-4422860
Friday Squid Blogging: The Far Side Squid ComicSchneier on Security·Dec 10, 22:05 UTC · Dec 10, 2021Exploit / PoCCVE-2021-44228160
Operation Blacksmith: Lazarus exploits Log4j flaws to deploy DLang malwareSecurity Affairs·Dec 12, 15:31 UTC · Dec 12, 2023MalwareCVE-2021-4422847
Lazarus Group Using Log4j Exploits to Deploy Remote Access TrojansThe Hacker News·Dec 12, 04:59 UTC · Dec 12, 2023MalwareCVE-2021-44228CVE-2021-44832CVE-2023-4279360
Top 12 vulnerabilities list highlights troubling reality: many organizations still aren't patchingCyberScoop·Aug 3, 19:44 UTC · Aug 3, 2023Vulnerability in the wild60
Spring confirms ‘Spring4Shell’ zeroThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Exploit / PoCCVE-2022-22965CVE-2022-2296360
Cisco: Log4j vulnerability used to attack energy companies in Canada, US and JapanThe Record·Jan 11, 00:00 UTC · Jan 11, 2023Vulnerability55
Quarterly Report: Incident Response Trends in Q3 2022Cisco Talos·Oct 25, 12:00 UTC · Oct 25, 2022RansomwareCVE-2020-147260
Vishing Makes Phishing Campaigns Three Times More SuccessfulInfosecurity Magazine·Feb 24, 10:00 UTC · Feb 24, 2022Threat actorCVE-2021-35464CVE-2019-19781CVE-2021-4422860
The Log4j debacle showed again that public disclosure of 0-days only helps attackersHelp Net Security·Jan 6, 00:00 UTC · Jan 6, 2022Exploit / PoC60
China suspends deal with Alibaba for not sharing Log4j 0The Hacker News·Dec 23, 15:13 UTC · Dec 23, 2021Vulnerability in the wildCVE-2021-4422860
CISA releases a scanner to identify web services affected by Apache Log4j flawsSecurity Affairs·Dec 22, 22:10 UTC · Dec 22, 2021AdvisoryCVE-2021-44228CVE-2021-45046CVE-2021-4510560
New Log4j Patch Released to Fix DoS FlawInfosecurity Magazine·Dec 20, 10:43 UTC · Dec 20, 2021VulnerabilityCVE-2021-4422847
New Local Attack Vector Expands the Attack Surface of Log4j VulnerabilityThe Hacker News·Dec 20, 05:03 UTC · Dec 20, 2021Vulnerability in the wildCVE-2021-45105CVE-2021-45046CVE-2021-44228+1 CVEs60
45% of critical CVEs left unpatched in 2023Help Net Security·Apr 23, 13:33 UTC · Apr 23, 2026Vulnerability55
ThreatsDay Bulletin: Spyware Alerts, Mirai Strikes, Docker Leaks, ValleyRAT Rootkit — and 20 More StoriesThe Hacker News·Dec 18, 12:15 UTC · Dec 18, 2025MalwareCVE-2024-3721CVE-2025-5518260
Attacks pinned to critical React2Shell defect surge, surpass 50 confirmed victimsCyberScoop·Dec 11, 17:17 UTC · Dec 11, 2025Ransomware in the wildCVE-2025-5518260