Aggregator
漏洞复现:《CVE-2021-44228:Apache Log4j2 远程代码执行》
3 years 10 months ago
先是在野0day 《Grafana未授权任意文件读取》传出,随后更劲爆的《Apache Log4j2远程代码执行》的POC、EXP相继出现,后者的payloads传播速度之快、以及影响范围之广,使其在业内堪称 “核弹级” 漏洞。
漏洞复现:《CVE-2021-44228:Apache Log4j2 远程代码执行》
3 years 10 months ago
先是在野0day 《Grafana未授权任意文件读取》传出,随后更劲爆的《Apache Log4j2远程代码执行》的POC、EXP相继出现,后者的payloads传播速度之快、以及影响范围之广,使其在业内堪称 “核弹级” 漏洞。
探讨如何利用反射修复Log4j2的方法
3 years 10 months ago
反射修复log4j2
探讨如何利用反射修复Log4j2的方法
3 years 10 months ago
反射修复log4j2
探讨如何利用反射修复Log4j2的方法
3 years 10 months ago
反射修复log4j2
log4j2 JNDI 注入漏洞分析
3 years 10 months ago
0x01 写在前面2021 年 12 月 9 号注定是一个不眠之夜,著名的Apache Log4j 项目被爆存在远程代码执行漏洞,且利用简单,影响危害巨大,光是引入了 log4j2 依赖的组件都...
panda
CVE-2021-44228 - Patching is Recommended for Evolving Zero Day Vulnerability in Apache Log4j that allows remote code execution (RCE)
3 years 10 months ago
Akamai has been monitoring the rapidly evolving developments of CVE-2021-44228. We have been working closely with our customers and internal application teams to mitigate the risks posed by the threat of unauthorized remote code execution. This includes deploying an update to our existing Apache WAF rules to include mitigation for this Zero Day CVE, and updating the Log4j library to version 2.15.0 or later.
Akamai
2021 读书小结
3 years 10 months ago
今天不谈技术,只喷人
3 years 10 months ago
作为非安全圈(主要是门槛不够,进不去)非著名喷子,今天不谈技术,不谈漏洞,回归喷子本质。
今天不谈技术,只喷人
3 years 10 months ago
作为非安全圈(主要是门槛不够,进不去)非著名喷子,今天不谈技术,不谈漏洞,回归喷子本质。
今天不谈技术,只喷人
3 years 10 months ago
作为非安全圈(主要是门槛不够,进不去)非著名喷子,今天不谈技术,不谈漏洞,回归喷子本质。
《Go 语言设计与实现》纸质书正式发售:文末福利
3 years 10 months ago
纸质书正式发售,赠书 10 本
《Go 语言设计与实现》纸质书正式发售:文末福利
3 years 10 months ago
纸质书正式发售,赠书 10 本
《Go 语言设计与实现》纸质书正式发售:文末福利
3 years 10 months ago
纸质书正式发售,赠书 10 本
《Go 语言设计与实现》纸质书正式发售:文末福利
3 years 10 months ago
纸质书正式发售,赠书 10 本
《Go 语言设计与实现》纸质书正式发售:文末福利
3 years 10 months ago
纸质书正式发售,赠书 10 本
《Go 语言设计与实现》纸质书正式发售:文末福利
3 years 10 months ago
纸质书正式发售,赠书 10 本
《Go 语言设计与实现》纸质书正式发售:文末福利
3 years 10 months ago
纸质书正式发售,赠书 10 本
Concerned by the Security Risk Affecting Popular Services and Apps? Here’s What We Know.
3 years 10 months ago
Several security researchers have recently reported a powerful software bug that could potentially affect thousands of popular websites, services, hosted apps, and even game servers—thanks to an apparent flaw that could...
The post Concerned by the Security Risk Affecting Popular Services and Apps? Here’s What We Know. appeared first on McAfee Blog.
McAfee