Log4j stories

Microsoft Exchange and Log4j continue to be top points of compromise
Fri, 24th Mar 2023
#
microsoft
#
mfa
#
report
Arctic Wolf, a global specialist in security operations, has published its annual Arctic Wolf Labs Threat Report, revealing a year of turbulence.

FortiGuard Labs reports an increase of 50% in wiper malware
Fri, 24th Feb 2023
#
malware
#
ransomware
#
cybersecurity
Ransomware threats remain at peak levels with no evidence of slowing down globally with new variants enabled by Ransomware-as-a-Service (RaaS).

Iran-sponsored group using GitHub to deploy custom malware
Tue, 13th Dec 2022
#
secureworks
#
security vulnerabilities
#
github
The Secureworks Counter Threat Unit (CTU) has uncovered a subgroup of Iranian Cobalt Mirage using GitHub to store and deploy malware.

Optus, Medibank – and supply chains flying under the radar
Wed, 7th Dec 2022
#
devsecops
#
optus
#
gartner
In the wake of the attack on private health assurance firm Medibank, Australia’s cybersecurity minister Clare O’Neil warned of a new world “under relentless cyber-attack”.

72% of organisations remain vulnerable to Log4j vulnerability
Thu, 1st Dec 2022
#
cybersecurity
#
data breach
#
tenable network security
The data highlights legacy vulnerability remediation challenges, which are the root cause of the majority of data breaches.

Time to rethink how to fix software supply chain vulnerabilities
Mon, 7th Nov 2022
#
ransomware
#
cybersecurity
#
it automation
The Log4Shell vulnerability that hit countless servers across the globe would need urgent remediation, so the experts had their leave frozen and returned to find where to place the band aid.

Dramatic uptick in threat activity with exploits growing nearly 150%
Thu, 11th Aug 2022
#
exploits
#
cyber attacks
#
log4j
"While it’s not a surprise given increased attack opportunities like remote work, it’s still a worrying development and one we cannot ignore."

New report reveals evolving techniques targeting cloud-native environments
Fri, 6th May 2022
#
cybersecurity
#
application security
#
cloud services
Companies are adopting cloud-native technologies faster than ever before. Unfortunately, with new technology comes new threats and challenges.

Attackers using Log4Shell vulnerability to deliver backdoors
Fri, 1st Apr 2022
#
malware
#
virtualisation
#
firewall
Attackers are using the Log4Shell vulnerability to deliver backdoors and profiling scripts to unpatched VMware Horizon servers.

Cloud threat actors hone in on vulnerabilities, report finds
Thu, 31st Mar 2022
#
cloud services
#
bi
#
big data
As world governments issue warnings over the increasing cyber crime threat, the report's findings highlight common threats businesses should protect against.

APAC businesses still battling U.S. Log4Shell attacks
Wed, 9th Mar 2022
#
cloud services
#
hyperscale
#
public cloud
Log4Shell attacks prove a continued and complex threat to APAC businesses, according to security company Barracuda.

Log4Shell threat remains extremely high - Barracuda
Thu, 3rd Mar 2022
#
ddos
#
cybersecurity
#
barracuda
The quantity of cyber attacks targeting the Log4Shell complex of vulnerabilities in Log4j still remains extremely high, according to Barracuda Networks.

Trend Micro helps uncover critical file sharing Samba bug
Thu, 10th Feb 2022
#
cybersecurity
#
trend micro
#
cyber attacks
"This latest vulnerability disclosure highlights the challenges many global security teams have in mitigating risk."

The aftermath of Log4j - What can be done to protect businesses?
Mon, 24th Jan 2022
#
cybersecurity
#
open source
#
synopsys
Last year's Apache Log4j vulnerability created a lot of chaos, so what can be done to protect companies from the security implications?

New RCE bug is making APAC businesses vulnerable to Log Injection attacks
Thu, 13th Jan 2022
#
barracuda
#
cyber attacks
#
apache
A new remote code execution bug could be making businesses in Asia Pacific vulnerable to Log4Shell log injection attacks.

Cyberattacks increased by 50% in 2021, peaking in December due to Log4J exploits
Wed, 12th Jan 2022
#
cybersecurity
#
cyber attacks
#
log4j
"Last year, we saw a staggering 50% more cyberattacks per week on corporate networks compared to 2020 – that’s a significant increase."

Log4Shell zero day vulnerability most significant security threat of past decade
Wed, 12th Jan 2022
#
ddos
#
cybersecurity
#
breach prevention
Its effects will be felt far into 2022 and beyond, according to Imperva Research Labs.

Logjam: Log4j exploit attempts continue in globally distributed scans, attacks
Wed, 29th Dec 2021
#
firewall
#
network management
#
network security
"This rapid iteration of fixes has left software developers and organisations worldwide scrambling to assess and mitigate their exposure with nearly daily-changing guidance."