logo

Critical RCE Vulnerability: log4j - CVE-2021-44228 | Huntress

ID: 0211eedd-0f14-5b3b-99b8-de63cb13bca7

STIX ID: report--0211eedd-0f14-5b3b-99b8-de63cb13bca7

Feed Name: Huntress Blog

Threat Score
95/100

Date Published: 2024-06-24

Date Updated: 2026-04-28

...
...

**Huntress advisory on Log4Shell (CVE-2021-44228):** This report describes a critical remote code execution vulnerability in the Java log4j library that can be triggered by a single crafted string using JNDI lookups, lists affected software and vendors, documents active exploitation observed in the wild (including GreyNoise monitoring and public exploit tools), and provides mitigation guidance (upgrade to log4j 2.17.1, Java updates), detection resources (YARA/grep patterns, GreyNoise, Huntress testing tool), and responsible disclosure/testing notes.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.