#Red_Team
Some files for red team/blue team investigations into CVE-2021-44228
https://github.com/jmarcbaker/Red-vs-Blue-Team-Project-II
@BlueRedTeam
Some files for red team/blue team investigations into CVE-2021-44228
https://github.com/jmarcbaker/Red-vs-Blue-Team-Project-II
@BlueRedTeam
GitHub
GitHub - jmarcbaker/Red-vs-Blue-Team-Project-II: As the Red Team, you will attack a vulnerable VM within your environment, ultimately…
As the Red Team, you will attack a vulnerable VM within your environment, ultimately gaining root access to the machine. As Blue Team, you will use Kibana to review logs taken during their Day 1 en...
#CVE-2021
Simple Spring Boot application vulnerable to CVE-2021-44228
https://github.com/guerzon/log4shellpoc
@BlueRedTeam
Simple Spring Boot application vulnerable to CVE-2021-44228
https://github.com/guerzon/log4shellpoc
@BlueRedTeam
GitHub
GitHub - guerzon/log4shellpoc: Simple Spring Boot application vulnerable to CVE-2021-44228 (a.k.a log4shell)
Simple Spring Boot application vulnerable to CVE-2021-44228 (a.k.a log4shell) - GitHub - guerzon/log4shellpoc: Simple Spring Boot application vulnerable to CVE-2021-44228 (a.k.a log4shell)
#CVE-2021
#log4Shell
#log4j
A firewall reverse proxy for preventing Log4J (Log4Shell aka CVE-2021-44228) attacks.
https://github.com/mufeedvh/log4jail
@BlueRedTeam
#log4Shell
#log4j
A firewall reverse proxy for preventing Log4J (Log4Shell aka CVE-2021-44228) attacks.
https://github.com/mufeedvh/log4jail
@BlueRedTeam
GitHub
GitHub - mufeedvh/log4jail: A firewall reverse proxy for preventing Log4J (Log4Shell aka CVE-2021-44228) attacks.
A firewall reverse proxy for preventing Log4J (Log4Shell aka CVE-2021-44228) attacks. - mufeedvh/log4jail
#CVE-2021
#log4j
A Byte Buddy Java agent-based fix for CVE-2021-44228, the log4j 2.x \"JNDI LDAP\" vulnerability.
https://github.com/nccgroup/log4j-jndi-be-gone
@BlueRedTeam
#log4j
A Byte Buddy Java agent-based fix for CVE-2021-44228, the log4j 2.x \"JNDI LDAP\" vulnerability.
https://github.com/nccgroup/log4j-jndi-be-gone
@BlueRedTeam
GitHub
GitHub - nccgroup/log4j-jndi-be-gone: A Byte Buddy Java agent-based fix for CVE-2021-44228, the log4j 2.x "JNDI LDAP" vulnerability.
A Byte Buddy Java agent-based fix for CVE-2021-44228, the log4j 2.x "JNDI LDAP" vulnerability. - nccgroup/log4j-jndi-be-gone
#CVE-2021
#Log4J
CVE-2021-44228 Log4J multithreaded Mass Exploitation tool compatible with URL/IP lists.
https://github.com/razz0r/CVE-2021-44228-Mass-RCE
@BlueRedTeam
#Log4J
CVE-2021-44228 Log4J multithreaded Mass Exploitation tool compatible with URL/IP lists.
https://github.com/razz0r/CVE-2021-44228-Mass-RCE
@BlueRedTeam
#CVE-2021
#Log4j
Using code search to help fix/mitigate log4j CVE-2021-44228
https://github.com/sourcegraph/log4j-cve-code-search-resources
@BlueRedTeam
#Log4j
Using code search to help fix/mitigate log4j CVE-2021-44228
https://github.com/sourcegraph/log4j-cve-code-search-resources
@BlueRedTeam
GitHub
GitHub - sourcegraph/log4j-cve-code-search-resources: Using code search to help fix/mitigate log4j CVE-2021-44228
Using code search to help fix/mitigate log4j CVE-2021-44228 - GitHub - sourcegraph/log4j-cve-code-search-resources: Using code search to help fix/mitigate log4j CVE-2021-44228
#CVE-2021
#Log4j
Log4j CVE-2021-44228 finder and patcher
https://github.com/xsultan/log4jshield
@BlueRedTeam
#Log4j
Log4j CVE-2021-44228 finder and patcher
https://github.com/xsultan/log4jshield
@BlueRedTeam
GitHub
GitHub - xsultan/log4jshield: Log4j Shield - fast ⚡, scalable and easy to use Log4j vulnerability CVE-2021-44228 finder and patcher
Log4j Shield - fast ⚡, scalable and easy to use Log4j vulnerability CVE-2021-44228 finder and patcher - xsultan/log4jshield
#CVE-2021
Scanners for Jar files that may be vulnerable to CVE-2021-44228
https://github.com/CERTCC/CVE-2021-44228_scanner
@BlueRedTeam
Scanners for Jar files that may be vulnerable to CVE-2021-44228
https://github.com/CERTCC/CVE-2021-44228_scanner
@BlueRedTeam
GitHub
GitHub - CERTCC/CVE-2021-44228_scanner: Scanners for Jar files that may be vulnerable to CVE-2021-44228
Scanners for Jar files that may be vulnerable to CVE-2021-44228 - CERTCC/CVE-2021-44228_scanner
#Blue_Team
1. Internal network honeypot for detecting if an attacker/insider threat scans network for log4j CVE-2021-44228
https://github.com/BinaryDefense/log4j-honeypot-flash
2. Detector for Log4Shell exploitation attempts
https://github.com/Neo23x0/log4shell-detector
@BlueRedTeam
1. Internal network honeypot for detecting if an attacker/insider threat scans network for log4j CVE-2021-44228
https://github.com/BinaryDefense/log4j-honeypot-flash
2. Detector for Log4Shell exploitation attempts
https://github.com/Neo23x0/log4shell-detector
@BlueRedTeam
GitHub
GitHub - Neo23x0/log4shell-detector: Detector for Log4Shell exploitation attempts
Detector for Log4Shell exploitation attempts. Contribute to Neo23x0/log4shell-detector development by creating an account on GitHub.
#Red_Team
Exploiting CVE-2021-42278/CVE-2021-42287 to impersonate DA from standard domain user
https://github.com/WazeHell/sam-the-admin
@BlueRedTeam
Exploiting CVE-2021-42278/CVE-2021-42287 to impersonate DA from standard domain user
https://github.com/WazeHell/sam-the-admin
@BlueRedTeam
GitHub
GitHub - safebuffer/sam-the-admin: Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user
Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user - GitHub - safebuffer/sam-the-admin: Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from st...
#CVE-2021
#Log4j
Log4J Updater Bash Script to automate the framework update process on numerous machines and prevent the CVE-2021-44228
https://github.com/VinniMarcon/Log4jUpdater
@BlueRedTeam
#Log4j
Log4J Updater Bash Script to automate the framework update process on numerous machines and prevent the CVE-2021-44228
https://github.com/VinniMarcon/Log4jUpdater
@BlueRedTeam
GitHub
GitHub - VinniMarcon/Log4j-Updater: Log4J Updater Bash Script to automate the framework update process on numerous machines and…
Log4J Updater Bash Script to automate the framework update process on numerous machines and prevent the CVE-2021-44228 - GitHub - VinniMarcon/Log4j-Updater: Log4J Updater Bash Script to automate th...
#CVE-2021
#Log4j
This project is just to show Apache Log4j2 Vulnerability - aka CVE-2021-44228
https://github.com/bhprin/log4j-vul
@BlueRedTeam
#Log4j
This project is just to show Apache Log4j2 Vulnerability - aka CVE-2021-44228
https://github.com/bhprin/log4j-vul
@BlueRedTeam
GitHub
GitHub - bhprin/log4j-vul: This project is just to show Apache Log4j2 Vulnerability - aka CVE-2021-44228
This project is just to show Apache Log4j2 Vulnerability - aka CVE-2021-44228 - GitHub - bhprin/log4j-vul: This project is just to show Apache Log4j2 Vulnerability - aka CVE-2021-44228
#CVE-2021
#Log4j
Log4j 2.15.0 Privilege Escalation -- CVE-2021-45046
https://github.com/cckuailong/Log4j_CVE-2021-45046
@BlueRedTeam
#Log4j
Log4j 2.15.0 Privilege Escalation -- CVE-2021-45046
https://github.com/cckuailong/Log4j_CVE-2021-45046
@BlueRedTeam
GitHub
GitHub - cckuailong/Log4j_CVE-2021-45046: Log4j 2.15.0 Privilege Escalation -- CVE-2021-45046
Log4j 2.15.0 Privilege Escalation -- CVE-2021-45046 - cckuailong/Log4j_CVE-2021-45046
#CVE-2021
#log4j
#log4Shell
A playground for poking at the Log4Shell (CVE-2021-44228) vulnerability mitigations
https://github.com/rgl/log4j-log4shell-playground
@BlueRedTeam
#log4j
#log4Shell
A playground for poking at the Log4Shell (CVE-2021-44228) vulnerability mitigations
https://github.com/rgl/log4j-log4shell-playground
@BlueRedTeam
GitHub
GitHub - rgl/log4j-log4shell-playground: A playground for poking at the Log4Shell (CVE-2021-44228) vulnerability mitigations
A playground for poking at the Log4Shell (CVE-2021-44228) vulnerability mitigations - GitHub - rgl/log4j-log4shell-playground: A playground for poking at the Log4Shell (CVE-2021-44228) vulnerabilit...
#CVE-2021
Identifying all log4j components across all windows servers, entire domain, can be multi domain. CVE-2021-44228
https://github.com/KeysAU/Get-log4j-Windows.ps1
@BlueRedTeam
Identifying all log4j components across all windows servers, entire domain, can be multi domain. CVE-2021-44228
https://github.com/KeysAU/Get-log4j-Windows.ps1
@BlueRedTeam
GitHub
GitHub - KeysAU/Get-log4j-Windows.ps1: Identifying all log4j components across all windows servers, entire domain, can be multi…
Identifying all log4j components across all windows servers, entire domain, can be multi domain. CVE-2021-44228 - KeysAU/Get-log4j-Windows.ps1
#CVE-2021
#log4j2
Vulnerability scanner and mitigation patch for Log4j2 CVE-2021-44228
https://github.com/jyotisahu98/logpresso-CVE-2021-44228-Scanner
@BlueRedTeam
#log4j2
Vulnerability scanner and mitigation patch for Log4j2 CVE-2021-44228
https://github.com/jyotisahu98/logpresso-CVE-2021-44228-Scanner
@BlueRedTeam
GitHub
jyotisahu98/logpresso-CVE-2021-44228-Scanner
Vulnerability scanner and mitigation patch for Log4j2 CVE-2021-44228 - jyotisahu98/logpresso-CVE-2021-44228-Scanner
#CVE-2021
#log4j
Nmap NSE noscripts to check against log4shell or LogJam vulnerabilities (CVE-2021-44228)
https://github.com/gitlab-de/log4j-resources
@BlueRedTeam
#log4j
Nmap NSE noscripts to check against log4shell or LogJam vulnerabilities (CVE-2021-44228)
https://github.com/gitlab-de/log4j-resources
@BlueRedTeam
GitHub
GitHub - gitlab-de/log4j-resources: This repository is designed to be a collection of resources to learn about, detect and mitigate…
This repository is designed to be a collection of resources to learn about, detect and mitigate the impact of the Log4j vulnerability - more formally known as CVE-2021-44228 and CVE-2021-45046 (mir...
#CVE-2021
Hot-patch CVE-2021-44228 by exploiting the vulnerability itself.
https://github.com/qingtengyun/cve-2021-44228-qingteng-online-patch
@BlueRedTeam
Hot-patch CVE-2021-44228 by exploiting the vulnerability itself.
https://github.com/qingtengyun/cve-2021-44228-qingteng-online-patch
@BlueRedTeam
GitHub
GitHub - qingtengyun/cve-2021-44228-qingteng-online-patch: Hot-patch CVE-2021-44228 by exploiting the vulnerability itself.
Hot-patch CVE-2021-44228 by exploiting the vulnerability itself. - GitHub - qingtengyun/cve-2021-44228-qingteng-online-patch: Hot-patch CVE-2021-44228 by exploiting the vulnerability itself.