A few days ago, a serious new vulnerability was identified in Apache log4j v2 and published as CVE-2021-44228. We were one of the first security companies to write about it, and we named it "Log4Shell".
This guide will help you find trusted sources for Log4Shell information, determine if you are impacted by Log4Shell, and mitigate the Issue.
An open source web server and web application scanner that tests for misconfigurations, bugs, and missing patches. Not designed to be subtle, it's a pen tester's auditing tool through and through.
A utility that generates random VMs for security training. Give it a set of parameters in XML and it'll build vulnerable VMs for you to practice with. Uses Puppet, Packer and Vagrant to build the images.