Software Alternatives & Reviews

Tsunami VS Apache Log4j

Compare Tsunami VS Apache Log4j and see what are their differences

Tsunami logo Tsunami

A general purpose network security scanner with an extensible plugin system for detecting high severity vulnerabilities with high confidence

Apache Log4j logo Apache Log4j

Log4j is a logging framework (APIs) written in Java.
  • Tsunami Landing page
    Landing page //
    2023-07-25
  • Apache Log4j Landing page
    Landing page //
    2023-06-17

Tsunami videos

Tsunami Evict Review - All Sizes - Inside and out - The good and the bad

More videos:

  • Review - Tsunami Shield 6 Months Later Honest Review
  • Review - Tsunami Slow Pitch Rod Review

Apache Log4j videos

No Apache Log4j videos yet. You could help us improve this page by suggesting one.

+ Add video

Category Popularity

0-100% (relative to Tsunami and Apache Log4j)
Monitoring Tools
31 31%
69% 69
Security
100 100%
0% 0
Log Management
0 0%
100% 100
Web Application Security
100 100%
0% 0

User comments

Share your experience with using Tsunami and Apache Log4j. For example, how are they different and which one is better?
Log in or Post with

Social recommendations and mentions

Based on our record, Apache Log4j should be more popular than Tsunami. It has been mentiond 26 times since March 2021. We are tracking product recommendations and mentions on various public social media platforms and blogs. They can help you identify which product is more popular and what people think of it.

Tsunami mentions (3)

  • Log4j RCE Found
    Https://github.com/google/tsunami-security-scanner (I bet it would be easy to write a plugin for https://github.com/projectdiscovery/nuclei as well.) To see if there are injection points statically, I work on a tool (https://github.com/returntocorp/semgrep) that someone else already wrote a check with: https://twitter.com/lapt0r/status/1469096944047779845 or look for the mitigation with `semgrep -e... - Source: Hacker News / over 2 years ago
  • Security and self-hosting, bumping a 7 months old thread
    Thanks to you I just reenabled Tsunami https://github.com/google/tsunami-security-scanner. Also had software called something like vuln (blue logo with a yellow eye in the middle) running. But the hard disk of the server died --sadly and I can't remember how it was called.-- https://vuls.io/. Source: over 2 years ago
  • Awesome Penetration Testing
    Tsunami - General purpose network security scanner with an extensible plugin system for detecting high severity vulnerabilities with high confidence. - Source: dev.to / over 2 years ago

Apache Log4j mentions (26)

  • Studying Log4Shell
    The official website. The vulnerability was introduced in 2.0-beta7 which was released in 2013. Source: about 1 year ago
  • Apache POI Setup Logging Error
    What you need is log4j-core, what you downloaded is some kind of connector between log4j and JUL. Tbh I don't know what JUL is, but that's not important. You can get log4j-core on from the official website - https://logging.apache.org/log4j/2.x/ or in maven repo. In case you're not using maven, I highly, highly recommend you using it for managing your dependencies. Source: about 1 year ago
  • 5 Best Logging Solutions for Java
    Log4J(https://logging.apache.org/log4j/2.x/) is a Java-based logging framework. It is a part of Apache Logging Services. It was also the most popular and widely used Java logging solution until the exposure of its Log4Shell vulnerability last year. - Source: dev.to / over 1 year ago
  • Reduce Security Risks by Keeping Dependencies Up-To-Date with GitHub Actions and Dependabot
    Almost nothing is more ubiquitous in applications than logging libraries. No matter which type of application - hastily thrown-together prototypes, decades-old enterprise monoliths, newly built event-driven serverless apps - there is always the need to log. Even in non-production-grade applications where standard observability patterns such as monitoring and alerting might not be applied - logging is usually... - Source: dev.to / about 2 years ago
  • System Logger
    Most applications currently use Log4J2 or SLF4J. Both provide a compatible System.Logger implementation. - Source: dev.to / about 2 years ago
View more

What are some alternatives?

When comparing Tsunami and Apache Log4j, you can also consider the following products

Nessus - Nessus Professional is a security platform designed for businesses who want to protect the security of themselves, their clients, and their customers.

Datadog - See metrics from all of your apps, tools & services in one place with Datadog's cloud monitoring as a service solution. Try it for free.

OpenVAS - The Open Vulnerability Assessment System (OpenVAS) is a framework of several services and tools...

LOGBack - Logging framework

Rapid7 - Find security issues, verify vulnerability mitigations & manage security assessments with Metasploit. Get the world's best penetration testing software now. DownloadPen testing software to act like an attacker.

tinylog - tinylog is a lightweight logging framework with static logger class for Java and can be configured...