The Infocyte Blog

vulnerability-alert-log4j

Log4J/Log4Shells Exploit Analysis (CVE-2021-44228)

As a follow up to our other blog post related to CVE-2021-44228, the Remote Code Execution (RCE) vulnerability affecting Apache Log4j, we wanted to go into analysis of a log4shells attack. Who is vulnerable? Basically, this vulnerability affects any apache web server using vulnerable versions (2.11.0 – 2.14.1) of the log4j logger. The list of…

Read More »

Log4j Security Advisory: The Infocyte Platform is Not Vulnerable

This post was last updated on December 22nd, 2021 at 01:32 pmYou’ve likely heard that a major vulnerability in Apache Log4j was recently disclosed. Our team has been working around the clock to empower our customers to scan their systems for exploits and keep you updated as the situation develops. For more information, please see…

Read More »
vulnerability-alert-log4j

Log4J Exploit Detection (CVE-2021-44228)

This post was last updated on December 22nd, 2021 at 11:59 amUPDATED: 12/22 – Added new detection logic to mitigate common obfuscation tactics. De-emphasized mitigation procedures which no longer help. If you are reading this than I assume you have already heard about CVE-2021-44228, the Remote Code Execution (RCE) vulnerability affecting Apache Log4j, the Java…

Read More »