CISA Recommendation: Enumerate Internet-facing Endpoints That Use Log4j
CISA (Cybersecurity and Infrastructure Security Agency – USA) requests every organization to check Internet-facing assets for exposure to Log4j – Start by enumerating “internet-facing endpoints that use Log4j”
Detect Log4J Vulnerabilities using FireCompass Playbook
FireCompass Autonomous Red Teaming Platform has launched a playbook specifically designed to hunt Log4j vulnerability across the internet.
- Unlike conventional tools, discover Log4j issues in both known as well as shadow IT assets
- Perform safe detection of vulnerability by fuzzing various headers and query parameters of the target application
- Specific Playbook to hunt Log4j vulnerability across the internet