Explore tweets tagged as #log4shell
@intigriti
Intigriti
17 days
๐Ÿ’ก Tip!. Injecting Log4Shell payloads is also possible in PDF files! eelyvy has a dedicated GitHub repository showing exactly how to craft your PDF payload file! ๐Ÿ˜Ž. ๐Ÿ”—
Tweet media one
2
98
412
@nav1n0x
N$
16 days
Guys, whoever is using my Log4Shell/Log4J payload from Pastebin, make sure to replace my token ( with your own. I donโ€™t mind though. ๐Ÿ˜…
Tweet media one
8
13
192
@intigriti
Intigriti
19 days
Easiest way to test for Log4Shell (even in 2025) ๐Ÿค  . Example ๐Ÿ‘‡
Tweet media one
1
20
166
@adhirajhangal
Adhiraj Hangal
2 months
๐Ÿงต How Open Source Communities Handle Security Crises - and what founders & solo builders can learn. Two of the biggest software vulnerabilities in history:.- Heartbleed (2014).- Log4Shell (2021). Letโ€™s dive in๐Ÿ‘‡
Tweet media one
1
0
2
@AttackIQ
AttackIQ
1 year
Our latest attack graph emulates #Andariel's Operation Blacksmith, which targets #manufacturing, agriculture, and #security sectors using CVE-2021-44228 (Log4Shell) & NineRAT via Telegram. Learn how to validate your defenses against this threat! โžก๏ธ
Tweet media one
0
0
0
@intigriti
Intigriti
22 days
Breaking down how the Log4Shell attack works ๐Ÿ‘‡
Tweet media one
1
3
6
@intigriti
Intigriti
6 days
Deconstructing the Log4Shell JNDI payload ๐Ÿ‘‡
Tweet media one
1
6
36
@mubix
Rob Fuller
1 month
I use Log4shell canaries in my passwords and I have one per website. Itโ€™s been crazy interesting the sites that I have gotten pings for and where the pings are from. I think itโ€™s cool. It would be a fun talk to put together and a good story to tell but not usefulโ€ฆ.
35
58
827
@intigriti
Intigriti
18 days
Latest Bug Bytes is live! ๐Ÿš€. This month's issue is as usual packed with bug bounty tips:.โœ… Exploiting Log4Shell (Log4J) in 2025.โœ… An indispensable GitHub recon tool (not the one you have in mind) .โœ… Advanced WAF evasion techniques. & much more! ๐Ÿ˜Ž.
Tweet media one
2
9
65
@kaspersky
Kaspersky
2 months
๐Ÿ”ฅ #APTs in 2025 still abuse ProxyShell, Log4Shell, & Fortinet flaws. โš ๏ธ Patch or become a breach headline. ๐Ÿ“– Full Q1 2025 findings: #ThreatIntel #CyberAttack #StaySecure #APTs #CyberDefense #ZeroTrust #Cybersecurity #Kaspersky #Securelist #Linux
Tweet media one
Tweet media two
1
3
8
@Alevsk
Lenin Alevski @ DEFCON/BSidesLV/Blackhat
5 months
Log4Shell sigue siendo una amenaza latente, especialmente en sistemas donde Log4j no ha sido actualizado. Herramientas como "log4shell-detector" de Neo23x0 pueden ayudarte a identificar vulnerabilidades. Funciona escaneando patrones en archivos y trรกfico. Ideal para reforzar tu
Tweet media one
1
0
2
@intigriti
Intigriti
1 month
For some bug bounty hunters, the Log4Shell hunt never truly ended. ๐Ÿ˜ˆ. While most moved on, some researchers know this vulnerability is still hiding in production systems across the web, even today ๐Ÿ‘€. We just published a comprehensive guide showing exactly how to uncover
Tweet media one
2
26
168
@1336_0ff_by_0ne
1336_0ff_by_0ne
7 months
I'm trying something different. 3 inch Velcro patches for Crowdstruck, Solorigate, MOVEit Transfer and Log4shell. In recognition of analysts and responders who handled these major incidents, working nights, weekends and holidays. I think of them as merit badges.
Tweet media one
3
7
56
@BooksExplorers
My Favorite Books Explorers
5 days
Log4Shell is the attack that made us aware of the security risks if we are not careful in network programming in Java. With this book, you will know what to watch out for. #javaprogramming .#Security.#vulnerability.#Programmer.#Log4Shell.#AWS.qDXL5XHN.
0
0
2
@Scr1ptKid
Scr1ptKiddie
4 days
@stupidtechtakes You could(rarely), WannaCry was using 0day. Log4Shell was also 0day. Many 0days target the routers of normal peoples, to use them in botnets(e.g. Mirai botnet). This is one of the most common myths in cybersec. There is also many 0days used in the wild in browsers.
6
0
216
@Fabrikat0r
$mit
21 days
โšก Log4j.Yes, we all know Log4j (CVE-2021-44228) โ€” but it's still out there. Here's a quick recon checklist + exploit test cases you should keep in your bug bounty flow. #bugbounty #Log4Shell #infosec.
1
1
5
@1336_0ff_by_0ne
1336_0ff_by_0ne
5 months
I worked with a local silkscreen artist to make these patches for Crowdstruck, MOVEit Transfer and Log4shell. In recognition of analysts and responders who handled these major incidents, working nights, weekends and holidays. I think of them as merit badges. Ready to be pinned or
Tweet media one
Tweet media two
Tweet media three
0
4
15
@BsidesSLC
BSidesSLC
6 months
๐Ÿ”ฅ XZ, Log4Shellโ€ฆ whatโ€™s next?. At BSidesSLC, Paul Novarese (Hunted Labs) will reveal why open-source supply chain attacks are accelerating, why NVD & CVEs are failing, and what we need to do before the next big compromise. ๐Ÿ“… April 10-11, 2025 | SLCC Miller Campus. #BSidesSLC
Tweet media one
0
0
0
@ine
INE
2 months
Cyber teams that are winning are practicing with real vulnerabilities BEFORE they become emergencies. Learn how hands-on CVE labs transform how security professionals prepare for threats - from Log4Shell to the latest zero-days. Read the full article:
Tweet media one
0
1
3