Skip to content

Commit

Permalink
Refer to blog post for Log4Shell info
Browse files Browse the repository at this point in the history
  • Loading branch information
mbechler committed Dec 10, 2021
1 parent 9adcd62 commit 3ba06d8
Showing 1 changed file with 4 additions and 0 deletions.
4 changes: 4 additions & 0 deletions README.md
Original file line number Diff line number Diff line change
@@ -1,5 +1,9 @@
# Java Unmarshaller Security - Turning your data into code execution

If you came here for Log4Shell/CVE-2021-44228, you may want to read about
the exploitation vectors and affected Java runtime versions:
<https://mbechler.github.io/2021/12/10/PSA_Log4Shell_JNDI_Injection/>

## Paper

It's been more than two years since Chris Frohoff and Garbriel Lawrence have presented their research into Java object deserialization vulnerabilities ultimately resulting in what can be readily described as the biggest wave of remote code execution bugs in Java history.
Expand Down

0 comments on commit 3ba06d8

Please sign in to comment.