Seriously Risky Business Newsletter
December 16, 2021
Srsly Risky Biz: Thursday December 16
Presented by

Policy & Intelligence
Your weekly dose of Seriously Risky Business news is written by Tom Uren, edited by Patrick Gray and supported by the Cyber Initiative at the Hewlett Foundation, AustCyber and founding corporate sponsors CyberCX and Proofpoint.
The vulnerability disclosed in the Java Log4j logging library last week is, to put it mildly, quite bad. It also proves we need to pay more attention to little-known but pervasive software in the open source supply chain.
First, let's talk about the actual vulnerability.