{"id":44456,"date":"2021-12-16T13:22:32","date_gmt":"2021-12-16T13:22:32","guid":{"rendered":"http:\/\/906ae046-f4cb-4718-872e-2f9666a3bd43"},"modified":"2021-12-16T13:22:32","modified_gmt":"2021-12-16T13:22:32","slug":"log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\/","title":{"rendered":"Log4j flaw: This new threat is going to affect cybersecurity for a long time"},"content":{"rendered":"<div><img decoding=\"async\" src=\"https:\/\/www.zdnet.com\/a\/img\/resize\/09fcdd25799844f15b806af348ad43e30abe457c\/2021\/12\/16\/bab9518c-a057-4b0d-9c7b-28b43404a57e\/software-developers-working-late-getty.jpg?width=770&amp;height=578&amp;fit=crop&amp;auto=webp\" class=\"ff-og-image-inserted\"><\/div>\n<p>If there ever was any doubt over the severity of the Log4j vulnerability, director of US cybersecurity and infrastructure agency CISA, Jen Easterly, <a href=\"https:\/\/www.zdnet.com\/article\/log4j-flaw-puts-hundreds-of-millions-of-devices-at-risk-says-us-cybersecurity-agency\/\">immediately quashed those doubts<\/a> when she described it as &#8220;one of the most serious that I&#8217;ve seen in my entire career, if not the most serious&#8221;. <\/p>\n<p>On <a href=\"https:\/\/www.zdnet.com\/article\/security-warning-new-zero-day-in-the-log4j-java-library-is-already-being-exploited\/\">Friday 9 December<\/a>, the information security world was rocked by the disclosure of Log4j (<a href=\"https:\/\/cve.mitre.org\/cgi-bin\/cvename.cgi?name=CVE-2021-44228\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">CVE-2021-44228<\/a>), a zero-day vulnerability in the widely used Java logging library Apache Log4j, which allows attackers to remotely execute code and gain access to machines.<\/p>\n<p>Not only is the vulnerability relatively simple to take advantage of, the ubiquitous nature of Log4j means that it&#8217;s embedded in a vast array of applications, services and enterprise software tools that are written in Java \u2013 and used by organisations and individuals around the world.<\/p>\n<hr>\n<h3>LOG4J FLAW COVERAGE &#8211; WHAT YOU NEED TO KNOW NOW&nbsp;<\/h3>\n<hr>\n<p>That means after a long and exhausting year, tech staff find themselves scrambling to fix yet another critical vulnerability.<\/p>\n<p>Even worse, in the case of Log4j, it may be extremely hard for even security professionals to understand whether this code is part of their applications and thus a potential risk. Like much open-source software, it is&nbsp;<a href=\"https:\/\/www.zdnet.com\/article\/supply-chain-attacks-are-the-hackers-new-favourite-weapon-and-the-threat-is-getting-bigger\/\">built-in down the supply chain<\/a>. Many vendors are still attempting to find out if their products are affected.<\/p>\n<p>That&#8217;s why some have likened Log4j to <a href=\"https:\/\/www.zdnet.com\/article\/heartbleed-serious-openssl-zero-day-vulnerability-revealed\/\">Heartbleed<\/a>, a vulnerability in SSL that affected many major websites and services, but was also difficult to detect and manage. Like Heartbleed, <a href=\"https:\/\/www.zdnet.com\/article\/heartbleed-bug-still-affects-thousands-of-sites\/\">the consequences of which have continued to unfurl for years<\/a>, there&#8217;s already the fear that Log4j vulnerabilities could be <a href=\"https:\/\/www.zdnet.com\/article\/log4j-update-experts-say-log4shell-exploits-will-persist-for-months-if-not-years\/\">a <\/a><a href=\"https:\/\/www.zdnet.com\/article\/log4j-update-experts-say-log4shell-exploits-will-persist-for-months-if-not-years\/\">long-term problem<\/a>.<\/p>\n<p>Not that hackers have waited a moment before attempting to take advantage of a newly disclosed vulnerability, of course.<\/p>\n<section class=\"sharethrough-top placeholder\"> <\/section>\n<p>Within just a few hours, there were already a vast number of attempts at exploiting Log4j vulnerabilities. What&#8217;s more, the malicious activity being tracked has only continued to rise \u2013 one cybersecurity company <a href=\"https:\/\/www.zdnet.com\/article\/log4j-flaw-nearly-half-of-corporate-networks-have-been-targeted-by-attackers-trying-to-use-this-vulnerability\/\">says it took just days for attackers to target almost half of corporate networks<\/a>. <\/p>\n<p>Some of the first payloads dropped were <a href=\"https:\/\/www.zdnet.com\/article\/free-money-cyber-criminals-are-installing-cryptojacking-malware-on-unpatched-microsoft-exchange-servers\/\">cryptominers<\/a> \u2013 malware that uses the processing power of the infected device to mine for cryptocurrency.&nbsp;<\/p>\n<p>But much more dangerous threats soon followed.&nbsp;<a href=\"https:\/\/www.zdnet.com\/article\/log4j-flaw-attackers-are-making-thousands-of-attempts-to-exploit-this-severe-vulnerability\/\">These included<\/a> instances of penetration-testing tool Cobalt Strike being installed \u2013 something commonly used by attackers to steal usernames and passwords that are necessary to move around networks.<\/p>\n<p>That was followed by reports of <a href=\"https:\/\/www.zdnet.com\/article\/khonsari-ransomware-iranian-group-nemesis-kitten-seen-exploiting-log4j\/\">ransomware that is exploiting Log4j<\/a>. Take Khonsari, which is an incredibly basic form of ransomware, but ransomware groups are quick to adopt any techniques that increase the chances of compromising networks and successfully demanding a ransom, meaning more ransomware attacks leveraging Log4j are likely to follow.<\/p>\n<p>Then came the <a href=\"https:\/\/www.zdnet.com\/article\/log4j-flaw-now-state-backed-hackers-are-using-bug-as-part-of-attacks-warns-microsoft\/\">n<\/a><a href=\"https:\/\/www.zdnet.com\/article\/log4j-flaw-now-state-backed-hackers-are-using-bug-as-part-of-attacks-warns-microsoft\/\">ation state-backed hacking groups<\/a> looking to exploit the vulnerability \u2013 like they had with SolarWinds and Microsoft Exchange. Hacking operations working out of China, Iran, North Korea and Turkey were spotted attempting to leverage Log4j \u2013 and they&#8217;ll continue to make these moves for as long as they can.<\/p>\n<p>Work has already begun to repair the damage. CISA has <a href=\"https:\/\/www.zdnet.com\/article\/cisa-orders-federal-civilian-agencies-to-patch-log4j-vulnerability-by-december-24\/\">mandated that federal agencies must patch the Log4j vulnerability within days<\/a>. But for everyone else, the process could take years and there will be plenty of instances where, despite the critical vulnerabilities, some systems will never get the patch.<\/p>\n<p>Just look at EternalBlue, <a href=\"https:\/\/www.zdnet.com\/article\/ransomware-how-the-nhs-learned-the-lessons-of-wannacry-to-protect-hospitals-from-attack\/\">the catalyst behind WannaCry and NotPetya in 2017<\/a>, which still regularly features among the most commonly exploited vulnerabilities and,&nbsp;<a href=\"https:\/\/www.zdnet.com\/article\/why-the-fixed-windows-eternalblue-exploit-wont-die\/\">years later<\/a>, is still used by cyber criminals to launch attacks.<\/p>\n<p>Ultimately, as long as there are systems that are at risk from the Log4j vulnerability, there will be cyber criminals or nation state-backed hackers out there who will look to take advantage.<\/p>\n<p>And even if a high-profile organisation is under the impression that it&#8217;s protected against the vulnerability, there&#8217;s the possibility that attackers could compromise a supplier that doesn&#8217;t manage its IT as thoroughly. Criminals could then exploit that gap as a gateway to the larger, more lucrative target.<\/p>\n<hr>\n<h3>LOG4J FLAW COVERAGE &#8211; HOW TO KEEP YOUR COMPANY SAFE&nbsp;<\/h3>\n<hr>\n<p>It&#8217;s ultimately a quirk of how the internet works that so much harm could potentially come from an open-source project, <a href=\"https:\/\/xkcd.com\/2347\/\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">operated and managed on a voluntary basis<\/a>. The internet is a crucial part of our everyday lives, but instances like this Log4j vulnerability demonstrate how vulnerable it can be.<\/p>\n<p>Some experts will call for more rules and regulations over how the internet and computers ultimately work and fit together. That would be a difficult conversation, particularly given how so much of the infrastructure that helped make the internet what it is today is ultimately built from passion projects and volunteer schemes.<\/p>\n<p><a href=\"https:\/\/www.zdnet.com\/article\/everyone-is-burned-out-thats-becoming-a-security-nightmare\/\">Cybersecurity professionals were already burned out<\/a> after a difficult few years. Another major cybersecurity event in the run up to Christmas won&#8217;t have helped anything.<\/p>\n<p>Unfortunately, Log4j will likely remain an issue through 2022 and beyond \u2013 we&#8217;re probably only scratching the surface of the risk and the hacking campaigns that will attempt to exploit this vulnerability.<\/p>\n<p>The best thing organisations can do, for now, <a href=\"https:\/\/www.ncsc.gov.uk\/news\/apache-log4j-vulnerability\" target=\"_blank\" rel=\"noopener noreferrer nofollow\" data-component=\"externalLink\">is to follow the expert advice<\/a> and apply updates to mitigate the potential damage \u2013 and then hope that similar vulnerabilities don&#8217;t emerge elsewhere any time soon to cause more damage and more burnout.<\/p>\n<p> READ MORE <a href=\"https:\/\/www.zdnet.com\/article\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\/#ftag=RSSbaffb68\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Log4j vulnerability has been described as one of the most serious security vulnerabilities in recent years. Can we really be sure anything is secure any more?<br \/>\nREAD MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[62],"tags":[],"class_list":["post-44456","post","type-post","status-publish","format-standard","hentry","category-zdnet-security"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.1 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Log4j flaw: This new threat is going to affect cybersecurity for a long time 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Log4j flaw: This new threat is going to affect cybersecurity for a long time 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2021-12-16T13:22:32+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.zdnet.com\/a\/img\/resize\/09fcdd25799844f15b806af348ad43e30abe457c\/2021\/12\/16\/bab9518c-a057-4b0d-9c7b-28b43404a57e\/software-developers-working-late-getty.jpg?width=770&amp;height=578&amp;fit=crop&amp;auto=webp\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Log4j flaw: This new threat is going to affect cybersecurity for a long time\",\"datePublished\":\"2021-12-16T13:22:32+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\\\/\"},\"wordCount\":915,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.zdnet.com\\\/a\\\/img\\\/resize\\\/09fcdd25799844f15b806af348ad43e30abe457c\\\/2021\\\/12\\\/16\\\/bab9518c-a057-4b0d-9c7b-28b43404a57e\\\/software-developers-working-late-getty.jpg?width=770&amp;height=578&amp;fit=crop&amp;auto=webp\",\"articleSection\":[\"ZDNet | Security\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\\\/\",\"name\":\"Log4j flaw: This new threat is going to affect cybersecurity for a long time 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.zdnet.com\\\/a\\\/img\\\/resize\\\/09fcdd25799844f15b806af348ad43e30abe457c\\\/2021\\\/12\\\/16\\\/bab9518c-a057-4b0d-9c7b-28b43404a57e\\\/software-developers-working-late-getty.jpg?width=770&amp;height=578&amp;fit=crop&amp;auto=webp\",\"datePublished\":\"2021-12-16T13:22:32+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.zdnet.com\\\/a\\\/img\\\/resize\\\/09fcdd25799844f15b806af348ad43e30abe457c\\\/2021\\\/12\\\/16\\\/bab9518c-a057-4b0d-9c7b-28b43404a57e\\\/software-developers-working-late-getty.jpg?width=770&amp;height=578&amp;fit=crop&amp;auto=webp\",\"contentUrl\":\"https:\\\/\\\/www.zdnet.com\\\/a\\\/img\\\/resize\\\/09fcdd25799844f15b806af348ad43e30abe457c\\\/2021\\\/12\\\/16\\\/bab9518c-a057-4b0d-9c7b-28b43404a57e\\\/software-developers-working-late-getty.jpg?width=770&amp;height=578&amp;fit=crop&amp;auto=webp\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Log4j flaw: This new threat is going to affect cybersecurity for a long time\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Log4j flaw: This new threat is going to affect cybersecurity for a long time 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\/","og_locale":"en_US","og_type":"article","og_title":"Log4j flaw: This new threat is going to affect cybersecurity for a long time 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2021-12-16T13:22:32+00:00","og_image":[{"url":"https:\/\/www.zdnet.com\/a\/img\/resize\/09fcdd25799844f15b806af348ad43e30abe457c\/2021\/12\/16\/bab9518c-a057-4b0d-9c7b-28b43404a57e\/software-developers-working-late-getty.jpg?width=770&amp;height=578&amp;fit=crop&amp;auto=webp","type":"","width":"","height":""}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Log4j flaw: This new threat is going to affect cybersecurity for a long time","datePublished":"2021-12-16T13:22:32+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\/"},"wordCount":915,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\/#primaryimage"},"thumbnailUrl":"https:\/\/www.zdnet.com\/a\/img\/resize\/09fcdd25799844f15b806af348ad43e30abe457c\/2021\/12\/16\/bab9518c-a057-4b0d-9c7b-28b43404a57e\/software-developers-working-late-getty.jpg?width=770&amp;height=578&amp;fit=crop&amp;auto=webp","articleSection":["ZDNet | Security"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\/","url":"https:\/\/www.threatshub.org\/blog\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\/","name":"Log4j flaw: This new threat is going to affect cybersecurity for a long time 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\/#primaryimage"},"thumbnailUrl":"https:\/\/www.zdnet.com\/a\/img\/resize\/09fcdd25799844f15b806af348ad43e30abe457c\/2021\/12\/16\/bab9518c-a057-4b0d-9c7b-28b43404a57e\/software-developers-working-late-getty.jpg?width=770&amp;height=578&amp;fit=crop&amp;auto=webp","datePublished":"2021-12-16T13:22:32+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\/#primaryimage","url":"https:\/\/www.zdnet.com\/a\/img\/resize\/09fcdd25799844f15b806af348ad43e30abe457c\/2021\/12\/16\/bab9518c-a057-4b0d-9c7b-28b43404a57e\/software-developers-working-late-getty.jpg?width=770&amp;height=578&amp;fit=crop&amp;auto=webp","contentUrl":"https:\/\/www.zdnet.com\/a\/img\/resize\/09fcdd25799844f15b806af348ad43e30abe457c\/2021\/12\/16\/bab9518c-a057-4b0d-9c7b-28b43404a57e\/software-developers-working-late-getty.jpg?width=770&amp;height=578&amp;fit=crop&amp;auto=webp"},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/log4j-flaw-this-new-threat-is-going-to-affect-cybersecurity-for-a-long-time\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"Log4j flaw: This new threat is going to affect cybersecurity for a long time"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/44456","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=44456"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/44456\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=44456"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=44456"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=44456"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}