The log4shell disaster: these lessons learned

Why could log4shell have such an extreme impact? What homework do you need to do to be safe?

Topic

Education and trainingCloud SecurityData protection / GDPRData security / DLP / Know-how protectionLegislation, standards, regulationsIdentity and access managementNetwork Security / Patch ManagementData CenterWebsecurity / VPN

When & Where

calendar_month

Wed, 10/26/2022, 11:00 - 11:45

location_on

Room Budapest, NCC Ost

Download session as iCaldownload_for_offline

Details

  • Format:

    Workshop

Session description

In December 2021, it became clear that a popular Java open source library had a fatal vulnerability. It kept administrators and IT security managers on tenterhooks for weeks.

Why was log4shell able to have an impact like hardly any other vulnerability in the last 10 years?
We will show which requirements must be met for successful exploitation and why you are safe if you have done your homework.

The presentation is held by Kai Ullrich.

Speaker

Moderator