Australia: Cybersecurity authorities release joint cybersecurity advisory on mitigating Log4Shell and other Log4j-related vulnerabilities

Description

Cybersecurity authorities release joint cybersecurity advisory on mitigating Log4Shell and other Log4j-related vulnerabilities

On 22 December 2021, the Cybersecurity and Infrastructure Security Agency (CISA), alongside the Australian Cyber Security Centre, the United Kingdom’s National Cyber Security Centre, the Canadian Centre for Cyber Security and the New Zealand National Cyber Security Centre issued a joint cybersecurity advisory. It outlines details and ways of addressing Apache Log4j software’s vulnerabilities. In particular, the documents list the steps that organizations should implement to limit the risks and to protect their networks. The agencies recommend upgrading Log4j assets and establishing incident response procedures for Log4Shell exploitation identification.

Original source

Scope

Policy Area
Data governance
Policy Instrument
Cybersecurity regulation
Regulated Economic Activity
cross-cutting
Implementation Level
bi- or plurilateral agreement
Government Branch
executive
Government Body
other regulatory body

Complete timeline of this policy change

Hide details
2021-12-22
adopted

On 22 December 2021, the Cybersecurity and Infrastructure Security Agency (CISA), alongside the Aus…