More Problems For Exchange Server As Zero-day Exploits Are Attacked

– archyde news –

On-premises Microsoft Exchange servers have recently taken a beating and Exchange Server operators now have to worry regarding a new set of attacks. Microsoft acknowledged the issues in a post on the Security Response Centeridentifying two vulnerabilities, one server-side request forgery and another that allows remote code execution via PowerShell.

These vulnerabilities are apparently currently being exploited, with signs pointing to Chinese state-sponsored hacking groups known to use some of the web shells used in the attacks.

Microsoft says Exchange Online, the company’s hosted mail server solution, is not affected, but on-premises mail servers running outdated Exchange servers might be. The blog post lists instructions for mitigations, including blocking URL rewrite actions in a default IIS website and blocking remote access to Remote PowerShell.

– archyde news –

The company also lists some possible detection techniques using Microsoft Sentinel, Defender for Endpoint, and Defender Antivirus.

Share this post:

Photo of author

Alexandra Hartman Editor-in-Chief

Editor-in-Chief Prize-winning journalist with over 20 years of international news experience. Alexandra leads the editorial team, ensuring every story meets the highest standards of accuracy and journalistic integrity.

Abdulaziz Jassim.. you have philosophy | Gulf newspaper

Video Baim Wong and Paula Prank Domestic Violence Deleted After Harvest Blasphemy All

Leave a Comment

This site uses Akismet to reduce spam. Learn how your comment data is processed.