Virtualization Technology News and Information
Article
RSS
WhiteSource Launches Free Tool to Detect and Remediate Log4j Vulnerabilities

WhiteSource launched WhiteSource Log4j Detect, a free command-line interface (CLI) tool to help organizations quickly detect and remediate the Log4j vulnerabilities CVE-2021-44228 and CVE-2021-445046. 

This free developer tool, which is hosted on GitHub and is now available for use, quickly scans projects to find vulnerable Log4j versions and provides the exact path - both to direct or indirect dependencies - along with the fixed version for speedy remediation. As a standalone tool, developers can download the utility that matches their platform, run it within the terminal, and run the scan command on the root folder of the project. 

"By offering this free tool to developers and their teams, we aim to help organizations address these vulnerabilities, and mitigate their impact," said Rami Sass, co-founder, and CEO of WhiteSource. "It's important for us to provide security and DevOps teams the tools that they need to address new threats. Adopting a remediation-first approach and baking security automation into development is the best way to proactively address new and emerging risks to today's software development organizations."

Published Wednesday, December 15, 2021 10:29 AM by David Marshall
Filed under: ,
Comments
There are no comments for this post.
To post a comment, you must be a registered user. Registration is free and easy! Sign up now!
Calendar
<December 2021>
SuMoTuWeThFrSa
2829301234
567891011
12131415161718
19202122232425
2627282930311
2345678