@volkadav ("Mike Jackson") retweeted:
@jwgoerlich ("J Wolfgang Goerlich") wrote:
SaaS vendor, on a security questionnaire: We have a WAF, TLS externally, MTLS internally, a strong SDLC, and full logging.
Adversary, base64-encoding a Log4j exploit in the user-agent: