Apache Log4j 2.15.0 fix for log4j flaw does not adequately protect against attacks in some situations, experts say. Praetorian, among the first to exploit the Log4J flaw last Friday, says it’s vulnerable to exfiltration of data under certain conditions. Apache Foundation releases new version of Log 4.16.0 to address the issue. Security experts urge organizations to quickly update to the new version to avoid DoS attacks. Microsoft says Iranian threat actor Phosphorous has acquired an exploit for the Log 4j and made modifications to it.”]

