Arab Press

بالشعب و للشعب
Wednesday, Mar 25, 2026

'Potential for damage incalculable': Experts sound alarm over cyber vulnerability in widely used software

'Potential for damage incalculable': Experts sound alarm over cyber vulnerability in widely used software

While the first victims hit by hackers were Minecraft players, experts warn the cyber vulnerability could soon be exploited by spies and organised criminals.

Security experts are sounding the alarm over a newly discovered software vulnerability, and organisations have been advised to "urgently" check whether it leaves them exposed to hackers.

Alerts have been issued by the British and American governments as a growing number of hacking groups - potentially including spies and organised criminals - are exploiting the vulnerability to break into computer networks.

The British government said it was treating "this issue with the utmost seriousness" as the US warned the vulnerability was "being widely exploited by a growing set of threat actors".

Researchers in the private sector said "the potential for damage is incalculable" with one describing the severity as: "The internet is on fire right now."

The UK government said it was treating the issue 'with the utmost seriousness'


What is the issue?


It is very rare for enterprise software to be completely written from the ground up for every different product.

Instead this software often depends on a shared library of open-source code maintained by charity organisations and distributed without any royalties.

The new vulnerability has been discovered in one such bit of code.

Known as Log4j, the open-source tool is an Apache Software Foundation project and used almost ubiquitously in enterprise software products and cloud services.

It won't directly impact people using personal devices, but any data they have with organisations that operate web servers could be at risk.

A fix has already been published by Apache - which described the vulnerability as "critical" - and large companies who control and update their own software should be able to quickly patch the vulnerability.

But because Log4j is so widely used as a logging utility there are likely to be thousands of companies exposed because the flaw affects third-party software which they cannot directly update.

Apache credited Chen Zhaojun, a security researcher at Chinese company Alibaba, for discovering and reporting the issue.

Minecraft players were among the first victims.


Who has been affected?


The first wave of victims were people playing the Microsoft-owned computer game Minecraft.

Hackers were able to post a short message in the Minecraft chatbox to remotely execute commands on the computers of other players.

Microsoft said it has patched the issue for Minecraft players and told customers they would be protected if they applied the fix.

The most obvious first wave of attacks all involved "cryptojacking", when hackers hijack victim's computers to use their processing power to mine cryptocurrencies.

Microsoft warned that alongside installing coin miners it had seen hackers exploiting the flaw to steal credentials and data from victim's computers.

"The internet's on fire right now. People are scrambling to patch and all kinds of people are scrambling to exploit it," said Adam Meyers, senior vice president of intelligence at cyber security company Crowdstrike.

The software flaw could be used to attack banks and even governments


'A very serious threat'


"I cannot overstate the seriousness of this threat," warned Lotem Finkelstein, director of threat intelligence for Check Point Software Technologies.

Mr Finkelstein warned that the cryptojacking activity "creates just the sort of background noise that serious threat actors will try to exploit in order to attack a whole range of high value targets".

Check Point has detected hundreds of thousands of attempts to exploit this vulnerability across more than a third of all corporate global networks.

"Security teams need to jump on this with utmost urgency as the potential for damage is incalculable," Mr Finkelstein added.

Newsletter

Related Articles

Arab Press
0:00
0:00
Close
Saudi Arabia Expands Regional Trade Links by Opening New Land and Sea Routes to UAE
World Economic Forum Delays Saudi Conference as Regional Conflict Disrupts Global Agenda
Saudi Arabia and UAE Signal Potential Entry into Iran Conflict if Critical Infrastructure Is Targeted
Global Firms Accelerate Expansion into Saudi Arabia as Economic Reforms Gain Momentum
Global Labour Pressure Mounts as ILO Faces Calls to Reject Saudi Bid to Dismiss Migrant Worker Complaint
Gulf Powers Move Closer to Entering Iran Conflict as Regional Pressure Intensifies
Saudi Arabia Breaks Ranks with Regional Allies Over Response to Iran Escalation
Saudi Arabia Moves Closer to Direct Role as Iran Conflict Intensifies
World Economic Forum Postpones Jeddah Meeting Amid Escalating Regional Tensions
Trump to Deliver Keynote Address at Saudi-Backed Investment Summit in Miami Beach
Saudi Arabia and Kuwait Press Ahead With Energy Agreements Despite Regional Conflict
Can Saudi Arabia’s Yanbu Port Replace Hormuz? Capacity Limits Test Critical Oil Lifeline
Saudi Arabia Detects Ballistic Missiles as Regional Tensions Escalate in Gulf
Saudi Aramco Reduces Oil Shipments to Asia for Second Consecutive Month
Saudi Aramco Reduces Oil Shipments to Asia for Second Consecutive Month
Saudi Arabia and UAE Push Ahead With Major Deals Despite Iran-Related Uncertainty
Formula One Cancels Bahrain and Saudi Arabia Grands Prix Amid Escalating Regional Tensions
Pakistan Signals Strategic Realignment Toward Saudi Arabia Amid Regional Tensions
Saudi Arabia Cuts Oil Shipments to Asia as Regional Conflict Disrupts Key Export Routes
Saudi Arabia Moves to Contain Regional Escalation as Houthis Signal Readiness to Join Conflict
Saudi Arabia Signals Independent Nuclear Strategy Unaffected by Iran Tensions
Saudi Arabia Signals Independent Nuclear Strategy Unaffected by Iran Tensions
Egypt Reaffirms Strong Support for Saudi Arabia as Sisi Condemns Iran’s Gulf Attacks
Saudi Stocks Close Higher as Tadawul Index Gains 0.55% on Broad Sector Strength
Iran Fires Ballistic Missiles Toward Riyadh as Gulf Conflict Intensifies
Barcelona Midfielder Marc Casadó Attracts €40 Million Interest from Saudi Clubs
Strait of Hormuz Tensions Rise as Saudi Arabia Opens Key Air Base to US Forces
Saudi Arabia Confronts Strategic Turning Point as Iran Conflict Redefines Regional Alliances
Saudi Arabia Intercepts Missile as Two Others Land in Remote Area Without Casualties
Saudi Expulsion of Iranian Military Attaché Raises Doubts Over Fragile Riyadh–Tehran Rapprochement
Saudi Arabia’s Strategic East–West Pipeline Gains Global Attention as Energy Routes Face Growing Risks
Iran Reportedly Reduces Strikes on Saudi Arabia Amid Concerns Over Strong Retaliation
Saudi Arabia Criticises Israeli Strikes in Southern Syria Amid Rising Regional Tensions
Egypt and Saudi Arabia Warn Iran’s Actions Threaten Stability Across the Gulf
Egypt and Saudi Arabia Warn Iran’s Actions Threaten Stability Across the Gulf
Saudi Arabia Unveils Comprehensive 2026 Roadmap to Streamline Company Formation
Saudi-UAE Tensions Reveal Emerging Rivalry at the Heart of Gulf Power Dynamics
Saudi Arabia Launches Gulf Maritime Support Initiative to Safeguard Shipping
Saudi Arabia Expands US Military Access as UAE Braces for Prolonged Iran Conflict
Saudi Arabia Expels Iranian Diplomats Amid Escalating Regional Tensions
Saudi Arabia’s Edarat Wins Major Data Centre Deal with Regional Bank
Iran Intensifies Gulf Offensive as Saudi Arabia Intercepts Dozens of Drones
Regional Powers Hold Security Talks as Turkey Seeks New Strategic Pact
Asian Refiners Urge Saudi Arabia to Revise Oil Pricing Mechanism Amid War-Driven Volatility
Gulf States Weigh US Base Access and Military Alignment as Iran War Intensifies
IRGC Claims Strikes on Israel, Kuwait and Saudi Arabia as Conflict Widens
Saudi Arabia Intercepts Multiple Drones Amid Continued Iranian-Linked Attacks
Remains of Fallen Soldier Repatriated Following Death in Saudi Arabia
Iran Tensions Challenge Saudi Arabia’s Strategic Shift to Red Sea Oil Exports
Saudi Arabia Turns to Alternative Export Routes as Hormuz Disruption Strains Oil Flows
×