(arstechnica.com)
Written By joeo10
2021-12-14T21:02:20Z
What has happened since Log4Shell surfaced last Thursday? Almost immediately, security firm Greynoise detected active scanning attempting to identify vulnerable servers. Researchers report seeing this critical and easy-to-exploit vulnerability being used to install crypto-mining malware, bolster Linux botnets, and exfiltrate configurations, environmental variables, and other potentially sensitive data from vulnerable servers.
This is going to be a shitty few weeks…
The Log4Shell 0day is still ongoing.