Log4Shell - identify vulnerable external-facing workloads in AWS
ID: bdd3336a-6dc0-5601-946d-1d00e4e4ba4c
STIX ID: report--bdd3336a-6dc0-5601-946d-1d00e4e4ba4c
Feed Name: Mitiga
Threat Score
This Mitiga blog provides a concise operational playbook to find and test external-facing AWS workloads for the Log4Shell Log4j vulnerabilities (CVE-2021-44228 and CVE-2021-45046). It details required IAM permissions, how to enumerate public EC2 instances and load balancer URLs, configuring an out‑of‑band interaction proxy, executing a proof‑of‑concept exploit to detect RCE, and documenting resources for remediation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
