Get a Pentest and security assessment of your IT network.

News

Original Fix for Log4j Flaw Fails to Fully Protect Against DoS Attacks, Data Theft

Apache Log4j 2.15.0 fix for log4j flaw does not adequately protect against attacks in some situations, experts say. Praetorian, among the first to exploit the Log4J flaw last Friday, says it’s vulnerable to exfiltration of data under certain conditions. Apache Foundation releases new version of Log 4.16.0 to address the issue. Security experts urge organizations to quickly update to the new version to avoid DoS attacks. Microsoft says Iranian threat actor Phosphorous has acquired an exploit for the Log 4j and made modifications to it.”]

Source: https://www.darkreading.com/application-security/original-fix-for-log4j-flaw-fails-to-fully-protect-against-dos-attacks-data-theft

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

SEA has stolen invoices that shows Microsoft charges FBI for user data

News

Greek police arrested a man running the BTC-e Bitcoin exchange to launder more than US$4bn worth of the Bitcoin