Verlagslink DOI: 10.1109/TNSM.2024.3440188
Titel: The Log4j incident : a comprehensive measurement study of a critical vulnerability
Sprache: Englisch
Autorenschaft: Hiesgen, Raphael 
Nawrocki, Marcin 
Schmidt, Thomas C.  
Wählisch, Matthias 
Schlagwörter: Internet Security; Critical Vulnerability; Security Measurement
Erscheinungsdatum: 7-Aug-2024
Verlag: IEEE
Zeitschrift oder Schriftenreihe: IEEE transactions on network and service management 
Zeitschriftenband: 21
Zeitschriftenausgabe: 6
Anfangsseite: 5921
Endseite: 5934
Zusammenfassung: 
On December 10, 2021, Log4Shell was disclosed to the public and was quickly recognized as a most severe vulnerability. It exploits a bug in the wide-spread Log4j library that allows for critical remote-code-execution (RCE). Any service that uses this library and exposes an interface to the Internet is potentially vulnerable.

In this paper, we report about a measurement study starting with the day of disclosure. We follow the rush of scanners during the first two months after the disclosure and observe the development of the Log4Shell scans in the subsequent year. Based on traffic data collected at several vantage points we analyze the payloads sent by researchers and attackers. We find that the initial rush of scanners ebbed quickly, but continued in waves throughout 2022. Benign scanners showed interest only in the first days after the disclosure, whereas malicious scanners continue to target the vulnerability.During both periods, a single entity appears responsible for the majority of the malicious activities.
URI: https://hdl.handle.net/20.500.12738/19097
ISSN: 1932-4537
Begutachtungsstatus: Diese Version hat ein Peer-Review-Verfahren durchlaufen (Peer Review)
Einrichtung: Department Informatik (ehemalig, aufgelöst 10.2025) 
Fakultät Technik und Informatik (ehemalig, aufgelöst 10.2025) 
Dokumenttyp: Zeitschriftenbeitrag
Enthalten in den Sammlungen:Publications without full text

Zur Langanzeige

Google ScholarTM

Prüfe

HAW Katalog

Prüfe

Volltext ergänzen

Feedback zu diesem Datensatz


Diese Ressource wurde unter folgender Copyright-Bestimmung veröffentlicht: Lizenz von Creative Commons Creative Commons