Talk

Log4J mini lab

Mini Lab
Security

The Log4j security vulnerability better known as Log4Shell was the most severe security issue in years. In this minilab, we will explore and rebuild the exploit in an old and new versions of Java. After this lab, you have a better understanding of this security vulnerability. More importantly, you know why and how to fix similar problems in your application.

Scheduled on Wednesday from 16:00 to 17:00 (Europe/London) in Coding Cafe

Vulnerabilities
Fix
Log4Shell
Security
Java

Brian Vermeer

Snyk

Sr. Developer Advocate for Snyk, Java Champion, and Software Engineer with over a decade of hands-on experience in creating and maintaining software. He is passionate about Java, (Pure) Functional Programming and Cybersecurity. Brian is a JUG leader for the Virtual JUG and the NLJUG. He also co-leads the DevSecCon community and is a community manager for Foojay. He is a regular international speaker on mostly Java-related conferences like JavaOne, Devnexus, Devoxx, Jfokus, JavaZone and many more. Besides all that, Brian is a military reserve for the Royal Netherlands Air Force and a Taekwondo Master / Teacher.

Micah Silverman

Snyk

Micah is Snyk's Director of DevSecOps Acceleration. With 27 years of Java Experience (yup, that's from the beginning) and 21 years as a security professional Micah's authored numerous articles, co-authored a Java EE book, and spoken at many conferences. He's a maker, who's built full-size MAME arcade cabinets and repaired old electronic games (http://afitnerd.com/2011/10/16/weekend-project-fix-dark-tower/). He brings his love of all things security and Java to a conference near you!