← Back to feed
research Elastic Security Labs

Elastic's response to the Spring4Shell vulnerability (CVE-2022-22965)

Elastic Security Labs

Provide executive-level details about CVE-2022-22965, a recently-disclosed remote code execution (RCE) vulnerability also known as “Spring4Shell”.

T1190 1 IOC
Read the full story Elastic Security Labs →

Related Coverage

research SAML: A fractal of bad design Trail of Bits · Sep 21 research Group Policy hijacked: PAYLOAD ransomware weaponizes Active Directory GPO Kaspersky Securelist · Sep 21 research From Exposure to Lockdown: How AWS Neutralizes Compromised IAM Credentials through Managed Policies Unit 42 · Sep 21