Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News Editorials & Other Articles General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

Zorro

(18,882 posts)
Mon Dec 20, 2021, 07:31 PM Dec 2021

The 'most serious' security breach ever is unfolding right now. Here's what you need to know.

Much of the Internet, from Amazon’s cloud to connected TVs, is riddled with the log4j vulnerability, and has been for years

On Dec. 9, word of a newly discovered computer bug in a hugely popular piece of computer code started rippling around the cybersecurity community. By the next day, nearly every major software company was in crisis mode, trying to figure out how their products were affected and how they could patch the hole.

The descriptions used by security experts to describe the new vulnerability in an extremely common section of code called log4j border on the apocalyptic.

“The log4j vulnerability is the most serious vulnerability I have seen in my decades-long career,” Jen Easterly, U.S. Cybersecurity and Infrastructure Security Agency director, said in a Thursday interview on CNBC.

So why is this obscure piece of software causing so much panic, and should regular computer users be worried?

https://wapo.st/30JyoIP
4 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
The 'most serious' security breach ever is unfolding right now. Here's what you need to know. (Original Post) Zorro Dec 2021 OP
K&R for visibility. crickets Dec 2021 #1
No paywall link Nevilledog Dec 2021 #2
Original link shouldn't be paywalled Zorro Dec 2021 #3
I can never tell because I have a subscription. Nevilledog Dec 2021 #4

Nevilledog

(55,137 posts)
4. I can never tell because I have a subscription.
Mon Dec 20, 2021, 09:33 PM
Dec 2021

I tend to think everything from WaPo is paywalled.

Kick in to the DU tip jar?

This week we're running a special pop-up mini fund drive. From Monday through Friday we're going ad-free for all registered members, and we're asking you to kick in to the DU tip jar to support the site and keep us financially healthy.

As a bonus, making a contribution will allow you to leave kudos for another DU member, and at the end of the week we'll recognize the DUers who you think make this community great.

Tell me more...

Latest Discussions»General Discussion»The 'most serious' securi...