본문 바로가기

보안

CISA, FBI 및 NSA LOG4J 취약점을 위한 스캐너 출시

반응형

이제는 CISA와 FBI NSA까지 Log4j 취약점에 대해 대응을 하기 시작했다

 

공동 권고문을 발표하고 스캐너를 내놓았다

CISA의 스캐너는

https://github.com/cisagov/log4j-scanner

 

GitHub - cisagov/log4j-scanner: log4j-scanner is a project derived from other members of the open-source community by CISA to he

log4j-scanner is a project derived from other members of the open-source community by CISA to help organizations identify potentially vulnerable web services affected by the log4j vulnerabilities. ...

github.com

 

CERT Coordination Center 에서 내놓은 스캐너는 원격코드 실행이 가능한 가장 심각한 취약점인

CVE-2021-44228 에 대한 스캐너이다

https://github.com/CERTCC/CVE-2021-44228_scanner

 

GitHub - CERTCC/CVE-2021-44228_scanner: Scanners for Jar files that may be vulnerable to CVE-2021-44228

Scanners for Jar files that may be vulnerable to CVE-2021-44228 - GitHub - CERTCC/CVE-2021-44228_scanner: Scanners for Jar files that may be vulnerable to CVE-2021-44228

github.com

 

반응형