InfoTechTarget and Informa Tech's Digital Businesses Combine.

Together, we power an unparalleled network of 220+ online properties covering 10,000+ granular topics, serving an audience of 50+ million professionals with original, objective content from trusted sources. We help you gain critical insights and make more informed decisions across your business priorities.

Log4Shell: A Case Study in Responding to OSS 0-Day Attacks

Presented by

Matt Schwartz, Senior Software Security Engineer

About this talk

In the hours, days, and weeks following the disclosure of the Log4J zero-day vulnerability, FOSSA’s security engineering team implemented a comprehensive plan to help our customers respond. Senior software security engineer Matt Schwartz helped lead these efforts, working hand in hand with customers to minimize the vulnerability’s impact. Join Matt on April 13 for an inside look at FOSSA and our customers’ response to Log4Shell — and how the lessons we learned can help your organization prepare for the next zero-day vulnerability. He’ll discuss: -How Log4Shell impacted FOSSA customers -Strategies to mitigate vulnerabilities in direct and transitive dependencies -The biggest lessons we learned -Steps you can take now to prepare for the next zero-day vulnerability
FOSSA

FOSSA

6589 subscribers53 talks
Be Continuous. Automate the Risk out of Your Open Source.
Up to 90% of any piece of software is from open source, creating countless dependencies and areas of risk to manage. FOSSA is the most reliable automated policy engine for vulnerability management, license compliance, and code quality across the open source stack. With FOSSA, engineering, security, and legal teams all get complete and continuous risk mitigation for the entire software supply chain, integrated into each of their existing workflows.
Related topics