#Log4j begann als EU-Forschungsprojekt in den 90ern. Heute ist es eins der meistgenutzten #Java-Logging-Frameworks & überlebte #Log4Shell.
Wie ging das?

Christian Grobmeier 👉 Die Geschichte eines Projekts zwischen #OpenSource, Sicherheit & Verantwortung: https://javapro.io/de/die-lange-geschichte-von-log4j/

Die lange Geschichte von Log4j - JAVAPRO Germany

Logging ist die Kunst, ein System zu verstehen. Software protokolliert was gerade passiert in Log-Dateien, und Entwickler durchsuchen…

JAVAPRO Germany

“It won't happen to me.” That's what #Tesla, #Atlassian & #Fortnite thought. Jonathan Vila walks you through the top hidden flaws still lurking in production code & how to shut the doors before it's too late.

Get smart: https://javapro.io/2025/04/29/top-security-flaws-injections/

#DevSecOps #Log4Shell #SQLInjection

Together with our Staff Software Engineer, Łukasz Rola, we’re launching a brand-new series: Java Crack of the Week! 💻

👉 https://youtube.com/watch?v=JhH9N6pWPKk

In the first episode, Łukasz dives deep into one of the most critical Java vulnerabilities ever discovered: Log4Shell (CVE-2021-44228).

🎉 This series is part of our celebration of Java’s 30th anniversary - make sure to subscribe to our YouTube channel for weekly episodes!

#Java #Java30 #Java30withSoftwareMill #Log4Shell #JavaCrackOfTheWeek

Log4Shell Vulnerability Explained | Java Crack of the Week #1

YouTube

A single misstep in your infrastructure code can open the door to attacks. At #JCON2025, Jonathan Vila reveals the most common IaC security mistakes — and how to avoid them. Join his session!

Want to prep early? Check his #JAVAPRO article: https://javapro.io/2025/04/29/top-security-flaws-injections/

#Java #DevSecOps #Log4Shell #SQLInjection

Top Security Flaws in code: SQL,Deserialization,Logging injections

Learn about the top security flaws in current projects and how to solve them : SQL Injection, Serialization Injection and Logging injection.

JAVAPRO International

A single SQL line. One careless deserialization. That's all it takes to bring your app down. @vilojona shows how even top teams get it wrong and how you can get it right. Ready to patch your blind spots?

Start here: https://javapro.io/2025/04/29/top-security-flaws-injections/

#DevSecOps #Log4Shell #SQLInjection

Top Security Flaws in code: SQL,Deserialization,Logging injections

Learn about the top security flaws in current projects and how to solve them : SQL Injection, Serialization Injection and Logging injection.

JAVAPRO International

Think your code is safe? So did #Tesla. 🚨 @vilojona uncovers the top attacks hiding in your code right now - and how a single mistake can cost you everything.
Can you spot the flaw before hackers do?

Find out: https://javapro.io/2025/04/29/top-security-flaws-injections/

#Java #DevSecOps #Log4Shell #SQLInjection

Top Security Flaws in code: SQL,Deserialization,Logging injections

Learn about the top security flaws in current projects and how to solve them : SQL Injection, Serialization Injection and Logging injection.

JAVAPRO International

New Open-Source Tool Spotlight 🚨🚨🚨

Log4Shell still has lingering risks. If you're managing Java apps, check out Log4shell-detector on GitHub. It scans for vulnerable Log4j usage with minimal setup. Regular audits help keep your environment secure. #cybersecurity #Log4Shell

🔗 Project link on #GitHub 👉 https://github.com/Neo23x0/log4shell-detector

#Infosec #Cybersecurity #Software #Technology #News #CTF #Cybersecuritycareer #hacking #redteam #blueteam #purpleteam #tips #opensource #cloudsecurity

— ✨
🔐 P.S. Found this helpful? Tap Follow for more cybersecurity tips and insights! I share weekly content for professionals and people who want to get into cyber. Happy hacking 💻🏴‍☠️

GitHub - Neo23x0/log4shell-detector: Detector for Log4Shell exploitation attempts

Detector for Log4Shell exploitation attempts. Contribute to Neo23x0/log4shell-detector development by creating an account on GitHub.

GitHub
Was just reminded that #Log4Shell was 2021. Still feels like it was just a few weeks ago. Probably because we haven't learned any lessons from it.
En esta fecha, los investigadores de seguridad de Alibaba encuentran evidencia de que Log4Shell se encontraba publicando un código de explotación en GitHub.
Afectó en forma drástica a los servidores de Minecraft, Cloudflare, Microsoft y Amazon.
#retrocomputingmx #Log4Shell #vulnerability

El 9 de diciembre de 2021, se anuncia la vulnerabilidad de seguridad log4j, conocida como Log4Shell, es una vulnerabilidad crítica detectada en la biblioteca de registro de Apache Log4j, detectada por primera vez en noviembre 24.
Esta, otorga a los hackers acceso y control total de los dispositivos que ejecutan versiones de Apache sin el parche de seguridad.

#retrocomputingmx #Log4Shell #vulnerability