Importance of Attack Surfaces in Log4shell Context
Introduction Everyone in the IT Industry is alarmed by the discovery of a 0-day vulnerability in the famous Log4j, java logging framework. It's been assigned with a CVSS score of 10, which means any application using a vulnerable version of Log4j can be exploited by anyone. Such is the the severity of this vulnerability. It's imperative to fix this vulnerability and there are various threads out there on how to fix this issue and there are different third-party tools to find the usage of vulnerable log4j jars. This blog will not talk about this and is talking about the importance of keeping track of your IT Assets to stay resilient when attacks of such scale emerge in the future. Know Your Attack Surface Attack Surface - Different Points in the IT landscape of an organization, through which an attacker can attack your IT Infrastructure. With the increase in the IT complexity and the presence in the IT Landscape, the Attack surface of any organization is growing day by...