Log4Shell, the Log4j Vulnerability: What it Is, Who is Affected and How to Mitigate It

preview_player
Показать описание
Log4Shell: The Log4j Exploit; What it Is and How to Mitigate It

This is a video that discusses the CVE-2021-44228 Security Vulnerability aka Log4Shell and LogJam found in log4j2 which is version 2 of the popular logging framework log4j.

It covers what it is, how serious it is, who is affected and how to mitigate the vulnerability.

Log4Shell LIVE Demo of Log4j2 Vulnerability: Attack Scenarios and Mitigation Steps with Spring Boot

Join our Community on Patreon

Course on Massive Data Workloads with Open Source Software

GitHub Repo for the Video
Рекомендации по теме
Комментарии
Автор

Informative and straight to the point, cheers for the video! Also your voice is quite relaxing :)

nyanbinarydisaster
Автор

If you would like to do a deep dive on any of the items I discussed, please post your questions as comments and I will take a look at them soon. Thanks.

IzzyAcademy
Автор

Can you upload a video demoing this bug? Pretty curious how RCE would occur in a Java app. Could you demo it using a spring boot app please?

ghettoteacher
Автор

what about log4j - version 1. is it also affected?

tomvr
Автор

Hi,

Thank you for the information,

I'd like to know what version the log4j is in my server windows? Is there a command ? I have Apache tomcat.

Regards!!

adanpadilla
Автор

log4j-core is only affected. log-api not affected.

kishoregarapati