Exploring the Log4j Zero-Day Vulnerability: Implications for Application Security and Privacy

Thirumal, S. and Udayakumar, N and Kumar, Narayanan and Saritha, A. and Sheela Gowr, P. (2025) Exploring the Log4j Zero-Day Vulnerability: Implications for Application Security and Privacy. In: 2025 2nd International Conference on Computing and Data Science (ICCDS), Chennai, India.

[thumbnail of Exploring_the_Log4j_Zero-Day_Vulnerability_Implications_for_Application_Security_and_Privacy.pdf] Text
Exploring_the_Log4j_Zero-Day_Vulnerability_Implications_for_Application_Security_and_Privacy.pdf

Download (505kB)

Abstract

The necessity for security to protect the privacy of everyone who frequently uses PCs, cell phones, and IOT devices has increased along with the quick development and expansion of technology. Thus, logs have become a vital tool and greatest buddy for developers and other IT administrators in current technological age. Application logs have been used for a variety of tasks, such as business analytics, security compliance, debugging, and monitoring. Thus, Log4j is a popular open-source Java software library used by developers to monitor the activity of their software applications. Alibaba Cloud security researchers published a notification on December 9, 2023, alerting the public to a new Zero-Day vulnerability affecting the Java logging package log4j, tagged as CVE-2021-44228. With a severity score of 10.0 (the highest rating) this vulnerability allows hosts running software that makes use of this log4j version to execute simple remote code execution.

Item Type: Conference or Workshop Item (Paper)
Subjects: Computer Science Engineering > Deep Learning
Domains: Computer Science Engineering
Depositing User: User 7 7
Date Deposited: 14 Mar 2026 10:03
Last Modified: 14 Mar 2026 10:03
URI: https://ir.vistas.ac.in/id/eprint/13223

Actions (login required)

View Item
View Item