Log4Shell attacks are spreading fast after flaw exploited



    Days after the dangerous Log4Shell zero-day vulnerability was found in the Apache Log4j Java-based logging platform, experts have begun warning that malicious actors are already exploiting the flaw against vulnerable endpoints in various ways.

    Microsoft has published a list of ways Log4Shell (tracked as CVE-2021-44228) is being used: to install malware, cryptominers, to add the devices to the Mirai and Muhstik botnets, to drop Cobalt Strike beacons, to scan for information disclosure, or for lateral movement throughout the affected network.



    Source link

    Previous articleHow to take macro photos with your iPhone 13 Pro
    Next articleHisense Hi-Move IV HVC6264BKUK cordless vacuum review