Bugcrowd Security Flash -  Spring4Shell: What It Is and How To Address It @Bugcrowd
Bugcrowd Security Flash -  Spring4Shell: What It Is and How To Address It  @Bugcrowd
Uploaded January 2023 | Updated September 2026, 1 hour ago
On March 31st, 2022, a zero-day vulnerability found in the popular Java Web application development framework Spring put numerous Web applications at risk of a remote attack. The flaw, dubbed Spring4Shell and SpringShell, has caused a great deal of confusion over the past 24 hours as the security community tries to determine if the issue is in fact new, or related to older vulnerabilities.

As of March 31st, 2022, Spring has confirmed the zero-day vulnerability and has released Spring Framework versions to address it. The vulnerability impacts Spring MVC and Spring WebFlux applications running on JDK 9+.

In this brief Bugcrowd Security Flash video, Casey Ellis (Founder, Chairman, and CTO of Bugcrowd) and Adam Foster (Application Security Engineer at Bugcrowd) help clear up the confusion and answer questions such as:

What happened?
What are the vulnerabilities?
How serious is the flaw and how is it exploited?
What should you do to stay secure?
How can Bugcrowd help?
Bugcrowd Security Flash -  Spring4Shell: What It Is and How To Address ItYour environment doesn’t sit stillHacking Your Resumé - w/Ricki Burke (@cybersecricki)Introduction to AI & Machine Learning - w/InsiderPhDBig shifts in cybersecurityWe are the vibeWhy I ❤️ Offensive Work and Why I 💔 Offensive Work - w/Thomas Dullien (@halvarflake)What are WebSockets?Bugcrowds VRT: with Katie Paxton-Fear and CodingoBugcrowd Security Flash - The Kaseya REvil Attack ExplainedHow a Hacker Uses the Bugcrowd Platform with Brandon ReynoldsBugcrowd Security Flash: The HackLore Project
Bugcrowd |

Bugcrowd Security Flash - Spring4Shell: What It Is and How To Address It

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER