Threat actors now exploit the critical Apache Log4j vulnerability named Log4Shell to infect vulnerable devices with the notorious Dridex banking trojan or Meterpreter.
Source: LXer – Log4j vulnerability now used to install Dridex banking malware