Log4j Risk for Home User

SrTrekker
SrTrekker
edited January 2022 in Security Research Team
Three questions: 1) As a Box2 + BD Total Security am I at risk for a hacker to penetrate my home devices, e.g., surreptitiously installing a keylogger to capture passwords? 2) Alternatively, am I at risk accessing a remote server that has been compromised, thereby potentially capturing my UserID + password? 3) In the second case, is it possible that BD Total Security can determine a compromised server, thus blocking the transaction?

Answers

  • Mike_BD
    Mike_BD BD Staff
    edited December 2021

    Hello @SrTrekker ,

    Thanks for reaching us on this very hot topic. We have posted a detailed article on this, so I invite you for a quick read here : https://businessinsights.bitdefender.com/security-advisory-bitdefender-response-to-critical-0-day-apache-log4j2-vulnerability

    To your questions specifically:

    1) as long as your Total Security is up-to-date, running in optimal configuration and you don't purposely install any suspicious programs, you should be safe.

    2) There is a wide array of situations in which this might happen, even with legit platforms. The advice here would be to access only trusted sites, with valid certifications.

    3) Again, the number of potentially dangerous situations is very wide. We are constantly trying to improve the protection our products offer, but in these cases it is important that the server owners also patch their Apache.

    Stay safe,

    Mike

    Intel Core i7-7700 @ 3.60Ghz, 64GB DDR4 || Gigabyte nVIDIA GeForce® GTX 1070 G1 8GB || WD Blue NAND 500GB + 1TB