The Wayback Machine - https://web.archive.org/web/20220612160538/https://github.com/NCSC-NL/log4shell
Skip to content

NCSC-NL/log4shell

main
Switch branches/tags
Code

Latest commit

* Update software_list_c.md

Adding Cisco Catalyst 9100 series

* Update software_list_c.md

Cisco product list update, added cloudlock, collaborative experience, crosswork cloud and crosswork health inside

* Update software_list_c.md

* Update software_list_c.md

* Update software_list_t.md

Adding TheGreenBow (Not vuln)

* Update software_list_t.md

Up one line to keep the alphabetical order

* Update software_list_c.md

For Evolved Programmable Network Manager, the fix should be available from 13 Jan 2022.

* Update Trend Micro Deep Discovery Director

update of advisory on 13th Jan

* Update of Aruba products

* Update SAP product 

with information from latests Patch Day
6a59cb8

Git stats

Files

Permalink
Failed to load latest commit information.
Type
Name
Latest commit message
Commit time
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Log4shell vulnerabilities (CVE-2021-44228, CVE-2021-45046, CVE-2021-4104, CVE-2021-45105)

This repo contains operational information regarding the Log4shell vulnerability in the Log4j logging library. Especially CVE-2021-44228 / CVE-2021-45046 and also covers CVE-2021-4104 / CVE-2021-45105. For additional information see:

For affected organisations and CISOs searching for concise mitigation guidance, the Log4Shell for OES - Full presentation slides for CISOs and techies describes the vulnerability and explains all steps necessary to successfully mitigate the vulnerability (patching is not enough).

Repository contents

Directory Purpose
hunting Contains info regarding hunting for exploitation
iocs Contains any Indicators of Compromise, such as scanning IPs, etc
detection & mitigation Contains info regarding detection and mitigation, such as regexes for detecting scanning activity and more
scanning Contains references to methods and tooling used for scanning for the Log4j vulnerability
software Contains a list of known vulnerable and not vulnerable software
tools Contains a list of tools for automatically parsing info on this repo

Please note that these directories are not complete, and are currently being expanded.

NCSC-NL has published a HIGH/HIGH advisory for the Log4j vulnerability. Normally we would update the HIGH/HIGH advisory for vulnerable software packages, however due to the extensive amounts of expected updates we have created a list of known vulnerable software in the software directory.

Contributions welcome

If you have any additional information to share relevant to the Log4j vulnerability, please feel free to open a Pull request. New to this? Read how to contribute in GitHub's documentation.

Hall of fame

We would like to thank every single one of you that contributed to our GitHub page. NCSC-NL believes the GitHub page is a succes and you made that possible. Below we present a very incomplete list of contributants we consider the repository's hall of fame: