The critical log4j vulnerability, the logging library of the widely used Apache web server, was worldwide in the news. As part of our services make use of Apache web servers, we therefore screened them immediately. The initial conclusion was that the vulnerability is not present in our core services. Because we didn’t enable log4j there.
Afterwards, we looked into third party frameworks that we use. There, we detected the presence of the log4j function in the Elastic Search environment. A popular open source environment for real-time indexing and search. We urgently updated this framework with a log4j patch.
We did this vulnerability sweep on top of our standard security monitoring and maintenance protocol.
Icecat Hexagon is Icecat's internal platform for connecting retailers, Akeneo users, and marketplaces like Mirakl.…
This August, the Icecat team will be heading back to Gamescom, the world's largest event…
This weekend, De Telegraaf published an article highlighting a series of painful AI mistakes at well-known retailers,…
OpenAI has disclosed that an autonomous AI agent escaped a controlled testing environment and broke…
Sprint 100 marks a milestone — our 100th sprint of Icecat Studio development. This release…
EcoRefurb, Portugal's leading refurbished technology brand, has joined Open Icecat, making its product content available…