Cyber Threat Weather
BLOG CERT SOGETI ESEC
CERT CYBER THREAT WEATHER

Cyber Threat Weather - December 2021

Log4j : chronicles of an IT disaster

Summary report

Weak signals for Strategic CTI

  • Log4j : chronicles of an IT disaster.

Highlights

  • Analysis of APT27 and BlackCat.
    .

Vulnerability

  • CVE-2021-21220: Insufficient validation of untrusted input in V8.
  • CVE-2021-44790 / CVE-2021-44224: Apache HTTP Server vulnerabilities.

 

Download the report