#6: Log4j Vulnerability
Overall, the biggest cybersecurity story from the month of December was probably the ongoing Log4Shell vulnerability.
Sophos described to us how cybercriminals are pouncing on it with hundreds of thousands of attempts to remotely execute code.
Researchers in early December discovered a zero-day exploit in the popular Java logging library log4j. Long story short, many services, including those such as Steam, Apple’s iCloud and apps like Minecraft, are vulnerable.
Read more about what’s being done to fight it.