Codicrest Blog

Notes from Codicrest.

Field notes, retrospectives, and working memos from the team — what we’re seeing in real dependency backlogs, and the angle we’re taking.

Field note ·

Log4Shell still bites.

Three years after the original disclosure, the Log4Shell class of vulnerability is still the shape AppSec teams run into — same root cause, same blast radius, new names.

Read the post →