Two-Fifths of Log4j Apps Use Vulnerable VersionsInfosecurity Magazine·Dec 11, 09:30 UTC · Dec 11, 2023VulnerabilityCVE-2022-23307CVE-2022-23305CVE-2022-23302+2 CVEs60
How the Pentagon enlisted ethical hackers amid the Log4j crisisThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Vulnerability42
Cisco: Log4j vulnerability used to attack energy companies in Canada, US and JapanThe Record·Jan 11, 00:00 UTC · Jan 11, 2023Vulnerability55
Log4Shell is a dumpster fire that should have been avoidedHelp Net Security·Dec 23, 00:00 UTC · Dec 23, 2021Exploit / PoCCVE-2021-4422860
Second Log4j Vulnerability (CVE-2021The Hacker News·Dec 18, 13:56 UTC · Dec 18, 2021Vulnerability in the wildCVE-2021-45046CVE-2021-4422860
Hackers Begin Exploiting Second Log4j Vulnerability as a Third Flaw EmergesThe Hacker News·Dec 17, 05:54 UTC · Dec 17, 2021VulnerabilityCVE-2021-45046CVE-2021-4422847
Syxsense Secure protects businesses against the Log4j vulnerabilityHelp Net Security·Dec 16, 00:00 UTC · Dec 16, 2021VulnerabilityCVE-2021-4422835
Log4Shell: A new fix, details of active attacks, and risk mitigation recommendationsHelp Net Security·Dec 15, 00:00 UTC · Dec 15, 2021Ransomware in the wildCVE-2021-44228CVE-2021-4504660
Hackers using Log4j bug to profit from victim IP addresses through ‘proxyjacking’ schemeThe Record·Apr 5, 04:44 UTC · Apr 5, 2023Vulnerability42
Pay attention to Log4j attacks, Dutch National Cybersecurity Centre warnsSecurity Affairs·Jan 22, 20:34 UTC · Jan 22, 2022RansomwareCVE-2021-44228CVE-2021-45046CVE-2021-4104+1 CVEs60
New SolarWinds Serv-U vulnerability targeted in Log4j-related attacksHelp Net Security·Jan 20, 00:00 UTC · Jan 20, 2022Vulnerability in the wildCVE-2021-35247CVE-2021-3521160
Experts monitor ongoing attacks using exploits for Log4j library flawsSecurity Affairs·Dec 27, 14:26 UTC · Dec 27, 2021VulnerabilityCVE-2021-44228CVE-2021-45046CVE-2021-4255035
CISA Releases Free Scanner to Spot Log4j ExposureInfosecurity Magazine·Dec 23, 09:21 UTC · Dec 23, 2021AdvisoryCVE-2021-44228CVE-2021-4504647
More than 35,000 Java packages impacted by Log4j flaw, Google warnsSecurity Affairs·Dec 21, 09:46 UTC · Dec 21, 2021VulnerabilityCVE-2021-4504660
Experts: Log4j Bug Could Be Exploited for “Years”Infosecurity Magazine·Dec 14, 11:05 UTC · Dec 14, 2021Vulnerability30
Google: More than 35,000 Java packages impacted by Log4j vulnerabilitiesThe Record·Jan 18, 00:00 UTC · Jan 18, 2023VulnerabilityCVE-2021-44228CVE-2021-4504647
Log4Shell attacks began two weeks ago, Cisco and Cloudflare sayThe Record·Jan 18, 00:00 UTC · Jan 18, 2023Ransomware in the wild60
Google announces open source vulnerability reward program after Log4j, Codecov issuesThe Record·Jan 11, 00:00 UTC · Jan 11, 2023Vulnerability55
Local governments allegedly targeted with Iranian ‘Drokbk’ malware through Log4j vulnerabilityThe Record·Jan 9, 00:00 UTC · Jan 9, 2023VulnerabilityCVE-2021-44228CVE-2021-4504647
Hack DHS bug bounty expanded to include Log4j flawThe Record·Jan 4, 00:00 UTC · Jan 4, 2023Vulnerability30
Following Log4j: Supporting the developer community to secure ITHelp Net Security·Nov 1, 00:00 UTC · Nov 1, 2022Vulnerability30
Quarterly Report: Incident Response trends in Q1 2022Cisco Talos·Apr 26, 13:11 UTC · Apr 26, 2022Ransomware in the wildCVE-2021-44228CVE-2021-45046CVE-2021-22204+1 CVEs60
Qualys platform study: Log4Shell, the menace continuesHelp Net Security·Mar 21, 00:00 UTC · Mar 21, 2022Vulnerability55
If hackers are exploiting the Log4j flaw, CISA says we might not know yetCyberScoop·Jan 10, 17:30 UTC · Jan 10, 2022Ransomware in the wild60
Threat actors continue to exploit Log4j flaws, Microsoft WarnsSecurity Affairs·Jan 5, 10:46 UTC · Jan 5, 2022Threat actor in the wildCVE-2021-45046CVE-2021-45105CVE-2021-4104+2 CVEs60
Chinese hackers use Log4j exploit to go after academic institutionCyberScoop·Dec 29, 17:00 UTC · Dec 29, 2021Exploit / PoC in the wild60
Week in review: Log4j new vulnerabilities, Microsoft patch bypass, 2022 e-commerce threat trendsHelp Net Security·Dec 26, 00:00 UTC · Dec 26, 2021VulnerabilityCVE-2021-44228CVE-2021-4044460
New Log4j Patch Released to Fix DoS FlawInfosecurity Magazine·Dec 20, 10:43 UTC · Dec 20, 2021VulnerabilityCVE-2021-4422847
Hackers Exploit Log4j Vulnerability to Infect Computers with Khonsari RansomwareThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2021Ransomware in the wildCVE-2021-4422860
CISA to brief critical infrastructure companies about urgent new Log4j vulnerabilityCyberScoop·Dec 13, 16:32 UTC · Dec 13, 2021Vulnerability in the wild60
Logout4Shell, a vaccine for Log4Shell Apache Log4j RCESecurity Affairs·Dec 11, 10:05 UTC · Dec 11, 2021VulnerabilityCVE-2021-4422860
How Log4Shell remediation interfered with organizations' cybersecurity readinessHelp Net Security·Feb 24, 00:00 UTC · Feb 24, 2022Exploit / PoC60
Cynet Log4Shell Webinar: A Thorough - And ClearThe Hacker News·Feb 4, 08:34 UTC · Feb 4, 2022Vulnerability in the wild60
Securonix Autonomous Threat Sweeper automates search for Log4j related activityHelp Net Security·Dec 12, 13:02 UTC · Dec 12, 2023Exploit / PoC45
CISA issues \'emergency directive,\' orders federal agencies to address Log4j vulnerabilityThe Record·Jan 18, 00:00 UTC · Jan 18, 2023Vulnerability55
First Cyber Safety Review Board report finds Log4j has become an \'endemic vulnerability\'The Record·Jan 11, 00:00 UTC · Jan 11, 2023Vulnerability30
DHS Cyber Safety Review Board found no evidence China knew of Log4j before disclosureCyberScoop·Jul 14, 14:30 UTC · Jul 14, 2022Exploit / PoC in the wild60
North Korea-linked Lazarus APT uses Log4J to target VMware serversSecurity Affairs·May 23, 18:20 UTC · May 23, 2022Threat actorCVE-2021-4422860
Iranian Hackers Exploit Log4j Vulnerability to Deploy PowerShell BackdoorThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2022VulnerabilityCVE-2021-4422860
White House hosts open-source software security summit in light of expansive Log4j flawCyberScoop·Jan 13, 14:08 UTC · Jan 13, 2022Exploit / PoC in the wild60