In part one of this two-part series, Heather chats with two of Hurricane Labs' pentesters about the Log4Shell vulnerability.

Also, make sure to check out some of the articles and resources mentioned during this episode:

  • Log4Shell Everywhere
  • Log4Shell Detection with ZAP
  • Two Nmap NSE scripts:
    • NSE Log4Shell
    • Other NSE
  • Hurricane Labs' SOC Talk: IoT and Security Podcast
  • OWASP ZAP – The Eval Villain Add-on Blog Post
  • Making Easy DOM XSS Actually Easy with Eval Villain
  • Hurricane Labs Penetration Testing Services

Click here for our podcast episode transcript.