apple patient
  • Home
  • News
  • Rumors
  • Tips & Tricks
  • Reviews
  • Insights
No Result
View All Result
  • Home
  • News
  • Rumors
  • Tips & Tricks
  • Reviews
  • Insights
No Result
View All Result
apple patient
No Result
View All Result

"Log4Shell" exploit: Apple closes iCloud security hole

Milan Jovicic by Milan Jovicic
14. December 2021 - 18:01 CET
in Apple News
0
"Log4Shell" exploit: Apple closes iCloud security hole

Wire-frame padlock and fingerprint on binary numbers background. Information security concept. 3d illustrations.

WhatsAppFacebookEmail
Threads

Apple has patched the “Log4Shell” iCloud vulnerability after it was revealed last week that a dangerous security flaw in the open source tool log4j put millions of apps at risk.

Cybersecurity experts called the vulnerability “the most critical vulnerability in a decade.” As a reminder, Log4j is an open source logging tool that is widely used by both websites and apps. One of the discovered Vulnerability could be exploited in literally millions of applications.

A new exploit called "Log4Shell" is causing headaches for security teams at major technology companies. If the vulnerability is exploited, hackers can execute malicious code on vulnerable servers. This also affects services such as Apple's iCloud.

The widespread use of Log4j makes it particularly easy for attackers to use the Log4Shell exploit.

To exploit the vulnerability, an attacker must trick the application into storing a specific string in the log. Because applications routinely log a variety of events - such as messages sent and received by users or the details of system errors - the vulnerability is unusually easy to exploit and can be triggered in a variety of ways.

"Log4Shell": Apple closes iCloud security gap

Apple's iCloud was one of the services vulnerable to the vulnerability. Now reported Macworld that Apple, Microsoft and other service providers acted quickly.

As reported by the Eclectic Light Company, Apple has patched the iCloud vulnerability. The website reports that researchers were able to demonstrate the vulnerability when connecting to iCloud via the web on December 9 and 10. On December 11, the same vulnerability stopped working. macOS does not appear to be affected by the vulnerability. The vulnerability was exploited in Minecraft before Microsoft patched it over the weekend.

Adam Meyers of Crowdstrike said the vulnerability was "fully weaponized" and that tools to exploit the vulnerability were readily available, adding:

The internet is currently on fire.

The Apache Software Foundation, which runs the project, rated the vulnerability at 10 on its risk scale because it is so easy to exploit and the tool is so widely used. Whatever. Apache has now released version 2.16.0 of Log4j. This means that the vulnerability has now been completely fixed. However, given the large number of websites and services that use the library, it may take some time until the security hole is closed worldwide. Nevertheless, iCloud is at least safe again. (Photo by JuanRoballo / Bigstockphoto)

  • iOS 15.2: How to use the App Privacy Report
Make Apfelpatient a preferred source One click – and you'll see us more often on Google
Was this article helpful?
YesNo
Tags: Apple ServicesiOSiPadOSmacOS
SendShareSend
Share

Our Amazon Storefront

A handpicked selection of products for iPhone, Mac and more – sorted by topic and updated regularly.

Shop Now

This post contains affiliate links (including Amazon). We earn a small commission on qualifying purchases – at no extra cost to you. Learn more on our Partner Program page.

Previous Post

Discount on iPhone 13 cases & more: Pitaka celebrates Christmas

Next Post

Base Station Hub with MagSafe: Nomad releases new charger

Milan Jovicic

Milan Jovicic

Milan founded Apfelpatient in 2016 and has been responsible for all editorial content since 2018 — news, rumors, guides, and product reviews. Apple devices here are not test units on loan for two weeks but everyday tools: from the iPhone through MacBook Pro, MacBook Air, and iMac to the Apple Vision Pro, at least one device from nearly every product category is in daily use, many of them replaced annually. Every menu path in a guide is verified on the device before it is published.

Patrick Brammall in the key art for the Apple TV series Last Seen, with the main character's missing daughter in the background

Last Seen: Apple TV shows trailer for the German-directed thriller

August 11, 2026 - 17:49 CEST
iPhone showing the five iCloud+ tiers priced from 0.99 to 59.99 euros, a choice that in iOS 27 also determines AI feature limits

iOS 27: Higher iCloud+ plan brings more AI features

August 11, 2026 - 17:17 CEST
Two iPhones side by side showing gameplay from Block Blast and Art of Fauna, both new to Apple Arcade in September

Apple Arcade: Two puzzle hits launch on September 3

August 11, 2026 - 4:54 PM CEST

About APFELPATIENT

APFELPATIENT brings you the latest Apple news, product updates, guides, reviews and tips across the entire Apple ecosystem — from the iPhone to the Mac to the Apple Vision Pro. From the first rumors to confirmed news: researched responsibly.

Follow Apfelpatient

Facebook Instagram YouTube Threads Threads

Company

  • About Apfelpatient
  • Contact
  • Author Profiles

Community

  • Netiquette
  • Push Notifications
  • RSS feed

Legal

  • Legal Notice
  • Privacy Policy
  • Terms of Use
  • Cookie Settings
  • Affiliate Program

Resources

  • Sitemap

© 2026 Apfelpatient. All rights reserved.

No Result
View All Result
  • Home
  • News
  • Rumors
  • Tips & Tricks
  • Reviews
  • Insights

© 2026 Apfelpatient. All rights reserved. Page Directory

Change language to Deutsch