News

Log4j vulnerability sweep

The critical log4j vulnerability, the logging library of the widely used Apache web server, was worldwide in the news. As part of our services make use of Apache web servers, we therefore screened them immediately. The initial conclusion was that the vulnerability is not present in our core services. Because we didn’t enable log4j there.

Afterwards, we looked into third party frameworks that we use. There, we detected the presence of the log4j function in the Elastic Search environment. A popular open source environment for real-time indexing and search. We urgently updated this framework with a log4j patch.

We did this vulnerability sweep on top of our standard security monitoring and maintenance protocol.

Martijn Hoogeveen

Founder and CEO of Icecat NV. Investor. Ph.D.

Recent Posts

Icecat PIM Release 3.17.0: Summary Card & PIM AI Search

Icecat PIM 3.17.0 is here and a more exciting 3.18.0 is on its way! This…

9 hours ago

Apple Unveils Its First Foldable iPhone as AI Moves Deeper Into Its Devices

Apple has introduced its first foldable smartphone, marking one of the biggest changes to the…

12 hours ago

Volkswagen Faces Its Biggest Competitive Test Yet as Chinese Carmakers Advance

Volkswagen is preparing for the largest restructuring in its 89-year history as Europe's biggest carmaker…

1 day ago

Nvidia Acquires Hugging Face for Nearly $13 Billion in Major Bet on Open AI

Nvidia has agreed to acquire Hugging Face for nearly $13 billion, making one of its…

2 days ago

OrangeQS Welcomes IQM to MAX Partnership Program

Orange Quantum Systems (OrangeQS), a venture of Icecat Capital, has welcomed IQM Quantum Computers as…

3 days ago

AI-Generated Product Content and the EU AI Act

In general, AI-generated product content does not need to be flagged under the EU AI Act. While…

4 days ago