Iran-linked threat actors compromise US Federal NetworkSecurity Affairs·Nov 17, 07:58 UTC · Nov 17, 2022Threat actor in the wildCVE-2021-4422860
Allies Warn of Iranian Ransom Attacks Using Log4ShellInfosecurity Magazine·Sep 16, 10:30 UTC · Sep 16, 2022RansomwareCVE-2021-44228CVE-2021-45046CVE-2021-4510560
FTC warns legal action against businesses who fail to mitigate Log4J attacksSecurity Affairs·Jan 5, 14:51 UTC · Jan 5, 2022Policy & legalCVE-2021-4422860
Chinese APT Hackers Used Log4Shell Exploit to Target Academic InstitutionThe Hacker News·Dec 30, 10:07 UTC · Dec 30, 2021VulnerabilityCVE-2021-4422860
Log4Shell enumeration, mitigation and attack detection toolHelp Net Security·Dec 21, 00:00 UTC · Dec 21, 2021Exploit / PoC60
Apache Log4j Vulnerability — Log4Shell — Widely Under Active AttackThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2021Vulnerability in the wildCVE-2021-26084CVE-2021-4422860
Log4j zero-day gets security fix just as scans for vulnerable systems ramp upThe Record·Dec 21, 00:00 UTC · Dec 21, 2022Exploit / PoCCVE-2021-4422860
How Log4Shell remediation interfered with organizations' cybersecurity readinessHelp Net Security·Feb 24, 00:00 UTC · Feb 24, 2022Exploit / PoC60
Week in review: Log4j new vulnerabilities, Microsoft patch bypass, 2022 e-commerce threat trendsHelp Net Security·Dec 26, 00:00 UTC · Dec 26, 2021VulnerabilityCVE-2021-44228CVE-2021-4044460
Second Log4j Vulnerability (CVE-2021The Hacker News·Dec 18, 13:56 UTC · Dec 18, 2021Vulnerability in the wildCVE-2021-45046CVE-2021-4422860
Contrast CVE Shield aims to protect applications while security teams deploy patchesHelp Net Security·Jul 29, 00:00 UTC · Jul 29, 2026Vulnerability in the wildCVE-2021-44228160
Two-Fifths of Log4j Apps Use Vulnerable VersionsInfosecurity Magazine·Dec 11, 09:30 UTC · Dec 11, 2023VulnerabilityCVE-2022-23307CVE-2022-23305CVE-2022-23302+2 CVEs60
New Log4j attacks target SolarWinds, ZyXEL devicesThe Record·Jan 17, 00:00 UTC · Jan 17, 2023RansomwareCVE-2021-3524760
Ukraine investigates multiple intrusion vectors in last week's website defacements, data wiper attacksThe Record·Jan 17, 00:00 UTC · Jan 17, 2023MalwareCVE-2021-3264860
Recovering from a cybersecurity earthquake: The lessons organizations must learnHelp Net Security·May 16, 00:00 UTC · May 16, 2022Vulnerability55
No Patch Available Yet for Critical SpringShell BugInfosecurity Magazine·Mar 31, 09:45 UTC · Mar 31, 2022VulnerabilityCVE-2010-162260
NHS Warns of Hackers Targeting Log4j Flaws in VMware HorizonThe Hacker News·Jan 8, 07:04 UTC · Jan 8, 2022Ransomware in the wildCVE-2021-4422860
Apache releases the third patch to address a new Log4j flawSecurity Affairs·Dec 18, 15:20 UTC · Dec 18, 2021Vulnerability in the wildCVE-2021-45046CVE-2021-44228CVE-2021-4510560
Hackers Exploit Log4j Vulnerability to Infect Computers with Khonsari RansomwareThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2021Ransomware in the wildCVE-2021-4422860
Friday Squid Blogging: The Far Side Squid ComicSchneier on Security·Dec 10, 22:05 UTC · Dec 10, 2021Exploit / PoCCVE-2021-44228160
Lazarus Group Using Log4j Exploits to Deploy Remote Access TrojansThe Hacker News·Dec 12, 04:59 UTC · Dec 12, 2023MalwareCVE-2021-44228CVE-2021-44832CVE-2023-4279360
Top 12 vulnerabilities list highlights troubling reality: many organizations still aren't patchingCyberScoop·Aug 3, 19:44 UTC · Aug 3, 2023Vulnerability in the wild60
Spring confirms ‘Spring4Shell’ zeroThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Exploit / PoCCVE-2022-22965CVE-2022-2296360
Cisco: Log4j vulnerability used to attack energy companies in Canada, US and JapanThe Record·Jan 11, 00:00 UTC · Jan 11, 2023Vulnerability55
Vishing Makes Phishing Campaigns Three Times More SuccessfulInfosecurity Magazine·Feb 24, 10:00 UTC · Feb 24, 2022Threat actorCVE-2021-35464CVE-2019-19781CVE-2021-4422860
The Log4j debacle showed again that public disclosure of 0-days only helps attackersHelp Net Security·Jan 6, 00:00 UTC · Jan 6, 2022Exploit / PoC60
China suspends deal with Alibaba for not sharing Log4j 0The Hacker News·Dec 23, 15:13 UTC · Dec 23, 2021Vulnerability in the wildCVE-2021-4422860
CISA releases a scanner to identify web services affected by Apache Log4j flawsSecurity Affairs·Dec 22, 22:10 UTC · Dec 22, 2021AdvisoryCVE-2021-44228CVE-2021-45046CVE-2021-4510560
45% of critical CVEs left unpatched in 2023Help Net Security·Apr 23, 13:33 UTC · Apr 23, 2026Vulnerability55
ThreatsDay Bulletin: Spyware Alerts, Mirai Strikes, Docker Leaks, ValleyRAT Rootkit — and 20 More StoriesThe Hacker News·Dec 18, 12:15 UTC · Dec 18, 2025MalwareCVE-2024-3721CVE-2025-5518260
Attacks pinned to critical React2Shell defect surge, surpass 50 confirmed victimsCyberScoop·Dec 11, 17:17 UTC · Dec 11, 2025Ransomware in the wildCVE-2025-5518260
2021 Vulnerability LandscapeRecorded Future·Jul 28, 00:00 UTC · Jul 28, 2025Vulnerability in the wildCVE-2021-4422860
5 Ways to Take Your Vulnerability Management Program to the Next LevelRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Vulnerability in the wildCVE-2022-0847CVE-2022-138860
Find out which cyber threats you should be concerned aboutHelp Net Security·Apr 18, 08:58 UTC · Apr 18, 2025RansomwareCVE-2021-4422860
Java security: If you ain’t cheatin,’ you ain’t tryin’CyberScoop·Feb 19, 11:00 UTC · Feb 19, 2025Exploit / PoC in the wildCVE-2021-4422860
CISA adds Spring4Shell to list of exploited vulnerabilitiesHelp Net Security·Jan 10, 14:38 UTC · Jan 10, 2025Vulnerability in the wildCVE-2022-22965CVE-2021-4422860
Zero-Day Exploit Detection Using Machine LearningPalo Alto Unit 42·Jun 5, 17:53 UTC · Jun 5, 2024Exploit / PoCCVE-2022-26134CVE-2022-31446160
Week in review: CISA releases RedEye, Apache Commons Text flaw, Medibank data breachHelp Net Security·Apr 12, 11:03 UTC · Apr 12, 2024Data breachCVE-2022-4288960
How new and old security threats keep persistingHelp Net Security·Mar 8, 00:00 UTC · Mar 8, 2024Ransomware in the wild60