Lessons Learned from the Log4j Exploit

Logo
Presented by

Cameron Townshend

About this talk

Explore research from the stewards of Maven Central on the Log4j exploit, including download behavior, propensity to patch.
Related topics:

More from this channel

Upcoming talks (3)
On-demand talks (39)
Subscribers (4492)
Sonatype is the software supply chain management company. We empower developers and security professionals with intelligent tools to innovate more securely at scale. Our platform addresses every element of an organization’s entire software development life cycle, including third-party open source code, first-party source code, infrastructure as code, and containerized code. Sonatype identifies critical security vulnerabilities and code quality issues and reports results directly to developers when they can most effectively fix them. This helps organizations develop consistently high-quality, secure software which fully meets their business needs and those of their end-customers and partners. More than 2,000 organizations, including 70% of the Fortune 100, and 15 million software developers already rely on our tools and guidance to help them deliver and maintain exceptional and secure software.