dotlah! dotlah!
  • Cities
  • Technology
  • Business
  • Politics
  • Society
  • Science
  • About
Social Links
  • zedreviews.com
  • citi.io
  • aster.cloud
  • liwaiwai.com
  • guzz.co.uk
  • atinatin.com
0 Likes
0 Followers
0 Subscribers
dotlah!
  • Cities
  • Technology
  • Business
  • Politics
  • Society
  • Science
  • About
  • Lah!

CSA Raises Alert In Light Of The Apache Java Logging Library Log4j Vulnerability

  • December 18, 2021
Total
0
Shares
0
0
0

Following recent reports of the zero-day critical vulnerability “Log4Shell” found in the Apache Java logging library Log4j, the Cyber Security Agency of Singapore (CSA) has raised the alert and is working with Critical Information Infrastructure (CII) sectors and organisations to patch their systems, and take remediation and mitigation measures immediately.

2 Log4j is an open-source Java package used to support activity-logging in many Java-based applications. As it is widely used by developers, this vulnerability can have very serious consequences. Successful exploitation of this vulnerability will allow an attacker to gain full control of the affected servers. The situation is evolving rapidly and there have already been numerous observations of ongoing attempts by threat actors to scan for and attack vulnerable systems.

3 CSA is monitoring the situation closely. There have been two emergency meetings by CSA with all the CII sector leads to issue directions and technical details, and to heighten monitoring for unusual activities. Aside from earlier advisories, CSA has also organised a briefing session this morning to trade associations and chambers to underscore the seriousness of the vulnerability and urgency of implementing mitigation measures for all businesses and SMEs.

4 CSA urges users and product developers to implement the mitigation measures listed below immediately:

i) Users of products with Log4j should:

• Patch to the latest updates immediately, especially for users of Apache Log4j with affected versions between 2.0 and 2.14.1. They are advised to upgrade to the latest version 2.16.0 immediately.

• Determine if Log4j is used in other instances within their system.

• Heighten monitoring for anomalous activity; deploy Protective Network Monitoring and Review System Logs.

ii) Product developers that use Log4j in their products should:

• Identify, mitigate and develop patches for affected products that utilise Log4j.

• Inform end-users of your products that contain this vulnerability and strongly urge them to prioritise software updates.

5 Organisations can refer to SingCERT’s advisory at https://www.csa.gov.sg/en/singcert/Advisories/ad-2021-010 for more information.

###

About the Cyber Security Agency of Singapore

Established in 2015, the Cyber Security Agency of Singapore (CSA) seeks to keep Singapore’s cyberspace safe and secure to underpin our Nation Security, power a Digital Economy and protect our Digital Way of Life. It maintains an oversight of national cybersecurity functions and works with sector leads to protect Singapore’s Critical Information Infrastructure. CSA also engages with various stakeholders to heighten cyber security awareness, build a vibrant cybersecurity ecosystem supported by a robust workforce, pursue international partnerships and drive regional cybersecurity capacity building programmes.

CSA is part of the Prime Minister’s Office and is managed by the Ministry of Communications and Information. For more news and information, please visit www.csa.gov.sg.

For media enquiries, please contact:

Goh Jing Xian (Ms)
Assistant Director, Comms and Engagement Office
Email: [email protected]

Total
0
Shares
Share
Tweet
Share
Share
Related Topics
  • Apache Java
  • CSA
  • Cyber Security Agency of Singapore
  • Log4Shell
dotlah.com

Previous Article
cpu-computer-chip-pexels-athena-2582937
  • People
  • Technology

How Technology Is Enhancing the Lives of People with Disabilities

  • December 17, 2021
View Post
Next Article
  • Technology

New NUS Centre For 5G Digital Building Technology To Augment Digital Capability Of Singapore’s Built Environment Industry

  • December 18, 2021
View Post
You May Also Like
View Post
  • Lah!

Tariffs, Trump, and Other Things That Start With T – They’re Not The Problem, It’s How We Use Them

  • John Francis
  • March 25, 2025
View Post
  • Lah!

Canonical announces 12 year Kubernetes LTS

  • John Francis
  • March 4, 2025
dotlah-smartnation-singapore-lawrence-wong
View Post
  • Artificial Intelligence
  • Featured
  • Features
  • Lah!
  • Machine Learning
  • Technology

Growth, community and trust the ‘building blocks’ as Singapore refreshes Smart Nation strategies: PM Wong

  • Dean Marc
  • October 9, 2024
dotlah-singapore-ndp-2024
View Post
  • Lah!

Here’s what to expect for NDP 2024!

  • dotlah.com
  • August 9, 2024
dotlah-singapore-airlines_may_21-1716298816
View Post
  • Lah!

Severe turbulence during Singapore Airlines flight leaves several people badly injured. One man died

  • majulah
  • May 22, 2024
dotlah-pm-lee-lawrence-wong-9656d4cd-1fa4-40ed-905d-e19e639b8476_728802dd
View Post
  • Lah!
  • People
  • Politics

End of Lee Era for Singapore as PM Steps Down

  • dotlah.com
  • May 16, 2024
DPM Lawrence Wong will be Singapore's fourth prime minister on May 15. ST PHOTO: LIM YAOHUI
View Post
  • Lah!
  • People
  • Politics

7 things to know about Singapore’s next prime minister Lawrence Wong

  • dotlah.com
  • May 15, 2024
When asked about his leadership style, DPM Lawrence Wong said he will be open and consultative, but he will not shirk from doing what is necessary for Singapore's future. ST PHOTO: LIM YAOHUI
View Post
  • Features
  • Lah!
  • People
  • Politics

‘We are prepared to relook everything’: Lawrence Wong on a changing society and his hopes for S’pore

  • dotlah.com
  • May 15, 2024


Trending
  • 1
    • Cities
    • Lah!
    Singapore Airlines And Temasek Foundation Partner To Support World Food Programme And The Global Covid-19 Response
    • August 13, 2020
  • 2
    • Cities
    • Technology
    ABB And Keppel Sign Memorandum For Digital Collaboration
    • March 7, 2022
  • automobile-graffiti-4030200_1280 3
    • Cities
    How To Avoid Pedestrian Accidents And Stay Safe On The Road
    • October 15, 2021
  • 4
    • Technology
    Personal Data Protection Commission Introduces Three Initiatives To Strengthen Accountability Among Organisations & Encourage Data Innovation
    • May 27, 2019
  • Christmas Gifts 5
    • Features
    • People
    The Most Desired Christmas Gifts in The U.S.
    • December 14, 2023
  • covid-19 antigen test 6
    • People
    • World Events
    PCR, Antigen And Antibody: Five Things To Know About Coronavirus Tests
    • January 2, 2021
  • 7
    • Society
    What We Know Suggests The Economic Impact Of Wuhan Coronavirus Will Be Limited
    • January 28, 2020
  • 8
    • Cities
    WHO Declares Global Health Emergency Over Coronavirus: 4 Questions Answered
    • February 1, 2020
  • 9
    • Lah!
    Part Of Jurong Lake District To Be Developed Into A Key Tourist Attraction By 2026
    • May 30, 2019
  • 10
    • Technology
    Ransomware incidents, online scams, and COVID-19-related phishing activities dominated cyber landscape in 2020
    • July 9, 2021
  • 11
    • Cities
    To Achieve Net-Zero Carbon Cities And Buildings We Need Systemic Efficiency
    • February 8, 2020
  • 12
    • Environment
    • People
    • World Events
    Coronavirus: Three Ways The Crisis May Permanently Change Our Lives
    • March 24, 2020
Trending
  • college-of-cardinals-2025 1
    The Definitive Who’s Who of the 2025 Papal Conclave
    • May 8, 2025
  • conclave-poster-black-smoke 2
    The World Is Revalidating Itself
    • May 7, 2025
  • oracle-ibm 3
    IBM and Oracle Expand Partnership to Advance Agentic AI and Hybrid Cloud
    • May 6, 2025
  • 4
    Conclave: How A New Pope Is Chosen
    • April 25, 2025
  • 5
    Canonical Releases Ubuntu 25.04 Plucky Puffin
    • April 17, 2025
  • 6
    Mathematicians uncover the logic behind how people walk in crowds
    • April 3, 2025
  • 7
    Tokyo Electron and IBM Renew Collaboration for Advanced Semiconductor Technology
    • April 2, 2025
  • 8
    Tariffs, Trump, and Other Things That Start With T – They’re Not The Problem, It’s How We Use Them
    • March 25, 2025
  • 9
    IBM contributes key open-source projects to Linux Foundation to advance AI community participation
    • March 22, 2025
  • PiPiPi 10
    The Unexpected Pi-Fect Deals This March 14
    • March 14, 2025
Social Links
dotlah! dotlah!
  • Cities
  • Technology
  • Business
  • Politics
  • Society
  • Science
  • About
Connecting Dots Across Asia's Tech and Urban Landscape

Input your search keywords and press Enter.