Log4j RCE II

Bookmarked!

This exercise is one of our challenges to help you learn Java Serialisation exploitation

PRO Easy 1-2 Hrs. 175 Java Deserialization Badge
Course

This exercise demonstrates the exploitation of a vulnerability in Log4j using a gadget to achieve remote code execution (RCE). It involves leveraging the JRMPListener from ysoserial to exploit the vulnerability via the <code>jndi:rmi</code> handler.

Included with PRO
Full course content 1 video

Ready to practice?

Get access to this lab and 600+ hands-on exercises with a PRO subscription.