Skip to content

anglican Armor of god

Primary Menu
  • Home
  • Bible Guide
  • RESOURCES
  • LinkTree
  • TARGET ACQUIRED
  • Home
  • 2021
  • December
  • 14
  • The Log4Shell 0-day exploit, how bad is it really?

The Log4Shell 0-day exploit, how bad is it really?

Mike December 14, 2021

Share this:

  • Click to share on Facebook (Opens in new window) Facebook
  • Click to share on X (Opens in new window) X
  • Click to print (Opens in new window) Print
  • Click to email a link to a friend (Opens in new window) Email

Log4Shell is the name given to a critical zero-day vulnerability that surfaced last Thursday when it was exploited in the wild in remote-code compromises against Minecraft servers. The source of the vulnerability was Log4J, a logging utility used by thousands if not millions of apps, including those used inside just about every enterprise on the planet. The Minecraft servers were the proverbial canary in the coal mine.

In the four days since, it’s clear Log4Shell is every bit as grave a threat as claimed, with the list of cloud services affected reading like a who’s who of the biggest names on the Internet. Threat analysts and researchers are still assessing the damage so far and the outlook over the next weeks and months.

What’s Log4J and what makes Log4Shell such a big deal?
Log4J is an open source Java-based logging tool available from Apache. It has the ability to perform network lookups using the Java Naming and Directory Interface to obtain services from the Lightweight Directory Access Protocol. The end result: Log4j will interpret a log message as a URL, go and fetch it, and even execute any executable payload it contains with the full privileges of the main program. Exploits are triggered inside text using the ${} syntax, allowing them to be included in browser user agents or other commonly logged attributes.

Here’s what exploits look like, as illustrated by Juniper Networks researchers:

The vulnerability, tracked as CVE-2021-44228, has a severity rating of 10 out of 10. The zero-day had been exploited at least nine days before it surfaced.

Researchers at Cisco’s Talos security team said they observed exploits beginning December 2.

What has happened since Log4Shell surfaced last Thursday?
Almost immediately, security firm Greynoise detected active scanning attempting to identify vulnerable servers. Researchers report seeing this critical and easy-to-exploit vulnerability being used to install crypto-mining malware, bolster Linux botnets, and exfiltrate configurations, environmental variables, and other potentially sensitive data from vulnerable servers.

What’s the prognosis?
In a best-case scenario, major brokerages, banks, and merchants will invest huge sums in overtime costs to pay large numbers of already overworked IT employees to mop up this mess during the holidays. You don’t want to think about the worst-case scenario, other than to remember the 2017 breach of Equifax and the resulting compromise of 143 million US consumers’ data that followed when that company failed to patch against a similarly devastating vulnerability.

Like this:

Like Loading...

Post navigation

Previous: Diners leave $4,400 tip, then server is fired by Arkansas restaurant
Next: ‘So Easy I Was Cruising’: Teammate Says Penn’s Trans Swimmer Boasted After Destroying Competition

Related Stories

ghfghfg

The Microprocessor turns 55, Thanks in large part to 3 Intel Engineers

Mike November 16, 2025 0
linus torvaldes

Linux, Linus and the personal OS that never really caught on

Mike August 25, 2025 0

Steve Jobs 2005 Stanford Commencement Speech

Mike April 30, 2022 0
Log in

Abortion ACNA adoption Anglican bbq bible business california Charlie kirk china Christ Christmas church college football Coronavirus covid covid-19 dogs Florida food football fsu god gospel hurricane Jesus john macarthur lawsuit los angeles nfl orlando pets Politics pope Prayer recipe religion roman catholic salvation seminoles target acquired Thanksgiving unemployment vaccine Weather

  • Your Sanctification Is the Work of the Trinity
  • The Spiritual Discipline Starter Pack for People Who Lack Discipline
  • Podcast: How (and How Not) to Think About Spiritual Habits in the New Year (Matthew Bingham)
  • Introducing the ‘Morning and Evening’ Podcast
  • Resources to Help You Meditate on Scripture in 2026
  • John 20 (Secret)
  • Revelation 21 (Family)
  • Malachi 3 (Secret)
  • 2 Chronicles 35 (Family)
  • Ecclesiastes 7:8 - Morning Devotional for Dec. 30th
  • 1 Samuel 7:12 - Morning Devotional for Dec. 29th
  • Galatians 2:20 - Morning Devotional for Dec. 28th
  • Job 8:11 - Morning Devotional for Dec. 27th
  • 1 Corinthians 15:45 - Morning Devotional for Dec. 26th
  • 2 Samuel 2:26 - Evening Devotional for Dec. 30th
  • Matthew 22:42 - Evening Devotional for Dec. 29th
  • Matthew 10:34 - Evening Devotional for Dec. 28th
  • Isaiah 58:11 - Evening Devotional for Dec. 27th
  • Matthew 28:20 - Evening Devotional for Dec. 26th

RECENT:

  • History of Israel
  • Significance of the P52 Manuscript Fragment
  • HELL in the New Testament
  • Praying Unceasingly – John MacArthur Sermon
  • Analysts: Trump’s Christmas Day U.S. strikes in Nigeria missed the worst terrorist spots
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • November 2023
  • October 2023
  • September 2023
  • August 2023
  • July 2023
  • June 2023
  • May 2023
  • April 2023
  • March 2023
  • January 2023
  • November 2022
  • October 2022
  • September 2022
  • August 2022
  • July 2022
  • June 2022
  • May 2022
  • April 2022
  • March 2022
  • February 2022
  • January 2022
  • December 2021
  • November 2021
  • October 2021
  • September 2021
  • August 2021
  • June 2021
  • April 2021
  • March 2021
  • February 2021
  • January 2021
  • December 2020
  • November 2020
  • October 2020
  • September 2020
  • August 2020
  • March 2019
  • January 2018
  • November 2017
  • January 2017
  • August 2014
  • April 2014
  • March 2014
  • February 2014
  • June 2008
  • December 2000
  • November 2000
  • November 1999
  • December 1900

Copyright 2026 © All rights reserved. | MoreNews by AF themes.
%d