Could you share links to any threads or accounts people are sharing regarding tech organisations in firefighting mode against this?
I work for a large non-US based tech company and have not heard anything about this beyond HN.
I work for a large non-US based tech company and have not heard anything about this beyond HN.
Edit: upon checking, we're safe, it doesn't impact log4j1, only the second version. We're not cowboys using versions as young as 2012 lol.
Friday mid-afternoon a Google search for the exploit showed there were many websites in several languages giving instruction on how to exploit the vulnerability. This is hitting hard and fast.