Google Cloud IDS signature updates help detect CVE-2021-44228, CVE-2021-45046, & CVE-2021-4104 Apache Log4j vulnerabilities

Source

Editor’s note : As of 12/20/2021 at 2:15pm PST, this post was updated to indicate that detections for CVE-2021-4104 are present in production As of 12/19/2021 at 1:51pm PST, this post was updated to indicate that detections for CVE-2021-45046 are now present in production. As of 12/16/2021 at 3:45pm PST, this post was updated to include information about detections for CVE-2021-45046. NIST has announced a recent vulnerability ( CVE-2021-44228, CVE-2021-45046, & CVE-2021-4104) in the Apache Log4j library. To help with detection, Google Cloud IDS customers can now monitor and detect attempted exploits of these CVEs. Background The Apache Log4j utility [...]