Inside the race to fix a potentially disastrous software flaw


In the frantic time since the flaw was publicly disclosed, researchers have concluded that the vulnerability had existed in Log4j since September 2013, apparently unknown to its vast universe of users. — Photo by Fotis Fotopoulos on Unsplash

At 2.51pm on Nov 24, members of an open-source software project received an alarming email. The contents threatened to undermine years of programming by a small group of volunteers and unleash massive cyberattacks across the globe.

“I want to report a security bug,” wrote Chen Zhaojun, an employee on Alibaba Group Holding Ltd’s cloud-security team, adding “the vulnerability has a major impact”.

Get 20% OFF The Star Digital Access

Monthly Plan

RM 13.90/month

RM 11.12/month

Billed as RM 11.12 for the 1st month, RM 13.90 thereafter.

Best Value

Annual Plan

RM 12.33/month

RM 9.87/month

Billed as RM 118.40 for the 1st year, RM 148 thereafter.

Follow us on our official WhatsApp channel for breaking news alerts and key updates!
Software flaw

Next In Tech News

Wall Street giants partner with Nvidia on $500 billion AI financing deal, FT reports
US House Democrats press Anthropic, OpenAI about rogue AI agents
Analysis-Crypto bill faces long odds after Senate punts vote to September
Microsoft plans to unveil next-generation AI chip in September, The Information reports
GameStop weighing withdrawal of eBay bid, Bloomberg News reports
Intel plans $15 billion share sale as turnaround rally lifts stock
Unitree's Shanghai IPO more than 8,000 times oversubscribed by retail investors
India's TCS flags alleged exposure of some employee data, says customer data not impacted
Retail investors sold SpaceX shares for first time on Friday
Meta launches new AI model as Zuckerberg champions open-weight push

Others Also Read