Identity-based segmentation neutralizes Apache Log4j exploit
ID: 8c5bb089-9adc-50a0-8004-9d76458ea575
STIX ID: report--8c5bb089-9adc-50a0-8004-9d76458ea575
Feed Name: Zscaler Security Research Blog
Threat Score
Zscaler ThreatLabz observed exploit attempts against the critical Log4j RCE (CVE-2021-44228) and recommends preventing and containing attacks using identity-based workload microsegmentation. The report explains how software identity (down to subprocess/JAR level) and least-privilege policies block inbound/outbound malicious communications, stop lateral movement and exfiltration, and aid inventorying vulnerable Log4j instances via fingerprint hashes and threat feeds.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
