#Log4Shell

Vulnerability/Target

2021-12-11 • Guidance for preventing, detecting, and hunting for CVE-2021-44228 Log4j 2 exploitation

Log4Shell is a family of remote-code-execution vulnerabilities in the Apache Log4j 2 logging utility, most prominently CVE-2021-44228. Lazarus exploited unpatched VMware Horizon systems through Log4Shell to execute PowerShell and deploy NukeSped backdoor malware against South Korean targets.

Tagged Reports

« Back