advertisement

Germany: 'Critical' cybersecurity flaw already exploited

BERLIN (AP) - Germany has activated its national IT crisis center in response to an 'œextremely critical'ť flaw in a widely used software tool that the government says has already been exploited internationally.

A spokesman for Germany's Interior Ministry said the country's federal IT safety agency is urging users to patch their systems as quickly as possible to fend off possible attacks using a bug in the Log4J tool.

'œThe threat situation is extremely critical," the spokesman, Steve Alter, told reporters in Berlin. "Immediate protective measures are required.'ť

German authorities have recorded efforts to exploit the bug around the world, including successful attempts, he said, without elaborating. So far no successful attacks against German government entities or networks have been confirmed, though a number have been deemed vulnerable, said Alter.

Germany is in contact with 'œnumerous national and international partners'ť on the matter, he said.

The flaw is considered so serious because the affected software is used in a wide range of devices that use Java software.

'œA successful exploit of this weakness would mean that someone could take complete control of the affected system,'ť said Alter.

Article Comments
Guidelines: Keep it civil and on topic; no profanity, vulgarity, slurs or personal attacks. People who harass others or joke about tragedies will be blocked. If a comment violates these standards or our terms of service, click the "flag" link in the lower-right corner of the comment box. To find our more, read our FAQ.