
Guy Barhart-Magen -- Log4j and Incident Response
The Application Security Podcast
00:00
Is This a Vulnerability?
This is not a vulnerability in the way that the system is working. The problem was that there was no sufficient controls and the bigger problem was nobody expected this to happen. We saw some XM rig instances being deployed as an IRF. These were cloud instances, so they run out part of a network or something like that. It's very difficult to keep a piece of software to its core features over time.
Transcript
Play full episode