• Solutions
    • IAM in the cloud
    • IAM Hybrid
  • Career
  • To our products
    • my-IAM
    • IDM-Portal
    • DynamicGroup
    • DynamicSync
    • ADFAQ Blog
  • Company
    • About us
    • Our customers
    • Our partners
    • Career
    • News
  • Contact
  • Contact
  • IAM in the cloud
  • IAM Hybrid
FirstAttributeFirstAttribute
FirstAttributeFirstAttribute
  • Identity Management
    • IAM in the cloud
    • IAM Hybrid
  • Products
    • my-IAM
    • IDM-Portal
    • DynamicGroup
    • DynamicSync
  • Company
    • About us
    • Our customers
    • Our partners
    • Career
    • News
    • Tech Blog
  • Contact
  • English
    • German

Log4Shell – FirstAttribute software solutions not affected

News |

 

The NCSC is highlighting a critical vulnerability in Apache Log4j. The major vulnerability, named Log4Shell, was discovered on December 10, 2021 in the Java library Log4j developed by the Apache Software Foundation.

FirstAttribute is not affected by this.

Index

  • FirstAttribute software solutions 
  • How does Log4Shell work?
  • An update for Log4j is available
  • Safety has top priority

FirstAttribute software solutions 

FirstAttribute customers are not at risk from this security issue.
FirstAttribute’s software and services do not use Log4j. The development is not done in Java. Web applications developed by FirstAttribute do not use Apache web server technology for deployment.

Our software and services are not affected:

  • FirstWare IDM-Portal
  • FirstWare DynamicGroup
  • FirstWare AD-Inspector
  • my-IAM PeopleConnect
  • DynamicSync

It is not necessary to update the existing installations. However, we generally recommend using the latest version and performing regular updates. To download the latest versions or make an appointment with our specialists, see links above.

How does Log4Shell work?

The Java library Log4j is designed to record information about a software, such as error reports (logging).
This vulnerability allows an attacker to send the server a link to a web page and have it read the contents of the page. If the page contains Java code, the server is able to execute that code.
This vulnerability is particularly dangerous because it provides a way to remotely execute code on any vulnerable server.
The NCSC reacted quickly and issued a warning about this vulnerability, as it affects a Java library used by thousands of companies.

An update for Log4j is available

A patch was hastily released by the Apache Foundation over the weekend, but it needs to be installed by server owners. Some affected companies, such as Mojang, the publisher of Minecraft, have also posted several warnings on their respective websites, asking all server owners to apply the proposed update as soon as possible.

Safety has top priority

For FirstAttribute, data security is a high priority. All of our products deal with the secure management of identity data and access rights. We continuously monitor and improve our software applications and services to ensure that our customers can handle their data securely.

With the help of security measures such as SSO, MFA or RBAC, as well as controlled user and authorization management (including automation and approval workflows), our solutions increase the security of identity data in your company. Detailed auditing also ensures absolute traceability of all actions.

If you have any questions about the Log4Shell attack or would like to verify the security of our software solutions, please feel free to contact us.

Artikel erstellt am: 14.12.2021
Share

You also might be interested in

Megatrend: Distributed identity management

Jul 1, 2025

The digital transformation is not only changing business models, but[...]

my-IAM PeopleConnect Release – Better search for contacts in Teams

Jul 8, 2022

FirstAttribute AG releases a new version of my-IAM PeopleConnect, the[...]

FirstWare IDM-Portal – Release 2020.4 with stronger performance for large enterprises

Mar 2, 2022

FirstAttribute publishes a new release of the FirstWare IDM-Portal. In[...]

Empfohlene Beiträge

  • Brains on Silicon 2025: AI Meets Identity in Dresden
  • FirstAttribute joins the Bavarian Environmental and Climate Pact
  • Megatrend: Distributed identity management
  • FirstAttribute joins the Rewe Team Challenge Dresden 2025
  • FirstAttribute Honored with Familienpakt Bayern Membership

Our IAM Solution

IDM-Portal

Discover our my-IAM platform

Contact Info

  • FirstAttribute AG
  • Am Büchele 18, 86928 Hofstetten, Germany
  • +49 81 969 984 330
  • info@firstattribute.com
  • https://firstattribute.com/

Umwelt- und Klimapakt Bayern


Familienpakt-Bayern-Logo

Solutions

  • IAM in the cloud
  • IAM Hybrid

Company

  • Career
  • Contact

Latest News

  • Brains on Silicon 2025: AI Meets Identity in Dresden
  • FirstAttribute joins the Bavarian Environmental and Climate Pact
  • Megatrend: Distributed identity management
  • FirstAttribute joins the Rewe Team Challenge Dresden 2025
  • FirstAttribute Honored with Familienpakt Bayern Membership

© 2025 · FirstAttribute AG.

  • Legal Information
  • Privacy Policy
Prev Next