This video covers the latest Log4J vulnerabilities and the steps to remediate them in your Java applications
๐ Chapter Timestamps
===================
00:00 - Agenda
00:55 - What is log4j vulnerability?
02:08 - 0-day vulnerability and affected versions
03:06 - What does the vulnerability do?
07:11 - What are the Tactical fixes?
08:52 - What is the Strategic fix
10:58 - How to find if my application has the log4j-core jar?
13:33 - Summary
๐ Reference Links
=================
๐ CVE : https://cve.mitre.org/cgi-bin/cvename.cgi?name=2021-44228
๐ CloudFlare blog: https://blog.cloudflare.com/how-cloudflare-security-responded-to-log4j2-vulnerability/
๐ CloudFlare deepdive: https://blog.cloudflare.com/inside-the-log4j2-vulnerability-cve-2021-44228/
๐ CloudFlare 0-day plan: https://blog.cloudflare.com/cve-2021-44228-log4j-rce-0-day-mitigation/
๐ Trusec: https://www.truesec.com/hub/blog/apache-log4j-injection-vulnerability-cve-2021-44228-impact-and-response
๐ Related Links
=============
๐ Terraform Getting Started: https://youtu.be/YXCuqueNQHk
๐ Terraform Architecture: https://youtu.be/a_IgGCEXAjQ
๐ Terraform setup: https://www.terraform.io/downloads.html
๐ Github code: https://github.com/TechPrimers/terraform-primer
๐ Terraform Providers: https://registry.terraform.io/browse/providers
๐ Related Playlist
================
๐ Terraform Playlist - https://youtube.com/playlist?list=PLTyWtrsGknYcFBpNMcaRL9riUZSfkEON_
๐Spring Boot Primer - https://www.youtube.com/playlist?list=PLTyWtrsGknYegrUmDZB6rcqMotOFZKvbn
๐Spring Cloud Primer - https://www.youtube.com/playlist?list=PLTyWtrsGknYeOJHtd3Ll93GRf28hrjlHV
๐Spring Microservices Primer - https://www.youtube.com/playlist?list=PLTyWtrsGknYdZlO7LAZFEElWkEk59Y2ak
๐Spring JPA Primer - https://www.youtube.com/playlist?list=PLTyWtrsGknYdt079e1pyvpgLrJ48RQ1LK
๐Java 8 Streams - https://www.youtube.com/playlist?list=PLTyWtrsGknYdqY_7lwcbJ1z4bvc5yEEZl
๐Spring Security Primer - https://www.youtube.com/playlist?list=PLTyWtrsGknYe0Sba9o-JRtnRlkl4gXMQl
๐ช Join TechPrimers Slack Community: https://bit.ly/JoinTechPrimers
๐ Telegram: https://t.me/TechPrimers
๐งฎ TechPrimer HindSight (Blog): https://medium.com/TechPrimers
☁️ Website: http://techprimers.com
๐ช Slack Community: https://techprimers.slack.com
๐ฆ Twitter: https://twitter.com/TechPrimers
๐ฑ Facebook: http://fb.me/TechPrimers
๐ป GitHub: https://github.com/TechPrimers or https://techprimers.github.io/
๐ฌ Video Editing: FCP
---------------------------------------------------------------
๐ฅ Disclaimer/Policy:
The content/views/opinions posted here are solely mine and the code samples created by me are open sourced.
You are free to use the code samples in Github after forking and you can modify it for your own use.
All the videos posted here are copyrighted. You cannot re-distribute videos on this channel in other channels or platforms.
#log4j #Vulnerabilities #TechPrimers
0 Comments