Aida Akl · @AAKL
383 followers · 643 posts · Server noc.social

From yesterday, and if true, is not in a good place right now.

How an unpatched Microsoft Exchange 0-day likely caused one of the UK’s biggest hacks ever arstechnica.com/security/2023/

#ProxyNotShell #zeroday #infosec #cybersecurity #microsoft

Last updated 1 year ago

Marcel SIneM(S)US ☑️ · @simsus
143 followers · 1802 posts · Server social.tchncs.de
Raj Samani · @Raj_Samani
472 followers · 49 posts · Server ioc.exchange

Play attack against Rackspace "chains CVE-2022-41080 + CVE-2022-41082 for RCE through OWA. This allows miscreants to bypass URL rewrite mitigations for Autodiscover endpoint provided by Microsoft in response to " theregister.com/2023/01/05/rac

#ransomware #ProxyNotShell #malware #infosec

Last updated 2 years ago

Marcel SIneM(S)US ☑️ · @simsus
128 followers · 1429 posts · Server social.tchncs.de
kantorkel · @kantorkel
1101 followers · 79 posts · Server social.bau-ha.us

Wie die geransomwared wurde? Vielleicht so:

haw-mailer.haw-hamburg.de (15.11.2022)

Found Exchange server:
Build: 15.1.2507.13
Version: 2016CU23+KB5019077
Build date: 10/2022
Affected by CVE-2022-41040
Affected by CVE-2022-41082
Affected by CVE-2022-41078
Affected by CVE-2022-41123
Affected by CVE-2022-41079
Affected by CVE-2022-41080

[via @leakix]

#HAW #hamburg #owassrf #ProxyNotShell

Last updated 2 years ago

Marcel SIneM(S)US ☑️ · @simsus
126 followers · 1378 posts · Server social.tchncs.de

Erstaunlich, dass nach zwei Monaten immer noch so viele Server nicht gepatcht sind...

Jetzt patchen! Noch 60.000 -Server für -Attacken anfällig | heise online heise.de/news/Jetzt-patchen-No

#microsoftexchange #microsoft #ProxyNotShell #exchange

Last updated 2 years ago

· @twitter
1 followers · 33305 posts · Server mstdn.skullb0x.io
Simodef · @simodef
5 followers · 17 posts · Server ioc.exchange
Marcel SIneM(S)US ☑️ · @simsus
108 followers · 1191 posts · Server social.tchncs.de
Scripter ☑️ · @scripter
109 followers · 427 posts · Server social.tchncs.de

Jetzt patchen! auf Exchange Server im -Kontext gesichtet | heise online
heise.de/-7434860

#ProxyNotShell #attacken

Last updated 2 years ago

Taggart: ~# :idle: · @mttaggart
2813 followers · 2888 posts · Server fosstodon.org

I went through the link hopping for you: here's the CrowdStrike script to detect exploitation: github.com/CrowdStrike/OWASSRF

#ProxyNotShell

Last updated 2 years ago

Günter Born · @gborn
598 followers · 2177 posts · Server social.tchncs.de

Seit dem 2. Dez. 2022 kämpft mit einem Ausfall seiner Exchange Hosting Instanzen. Nun wurde ein Ransomware-Befall als Ursache eingestanden. Sind die Opfer der Schwachstelle?

borncity.com/blog/2022/12/07/r

#ProxyNotShell #rackspace

Last updated 2 years ago

Mike · @miketheitguy
616 followers · 1266 posts · Server ioc.exchange

I wish I could post more about my trials and tribulations with running Microsoft Exchange over the years--but sadly I'd be walking a line that would be difficult to navigate. I will say this, however--DO NOT hold off on patches. Patch Day 1 on anything internet-facing, and monitor the fuck out of the stack otherwise.

#infosec #cybersecurity #ProxyNotShell

Last updated 2 years ago

AaronJunker :verified: · @AaronJunker
39 followers · 45 posts · Server phpc.social

RT @GovCERT_CH@twitter.com

The critical vulnerability called is being actively exploited and abused by cybercriminals. We are aware of 2,800 exposed Microsoft Exchange servers in CH🇨🇭Businesses and administrations are being urged to install security patches 🚨

👉 ncsc.admin.ch/proxynotshell-en

🐦🔗: twitter.com/GovCERT_CH/status/

#ProxyNotShell

Last updated 2 years ago

Fry · @fry
25 followers · 29 posts · Server blackhole.social

still not fixed. Exploitation started in August.

How is Exchange a paid product?

#cybersecurity #infosec #ProxyNotShell

Last updated 2 years ago

The Hacker News · @hackernews_bot
612 followers · 780 posts · Server social.platypush.tech

Referenced link: thehackernews.com/2022/10/micr
Discuss on discu.eu/q/https://thehackerne

Originally posted by The Hacker News / @TheHackersNews@twitter.com: twitter.com/TheHackersNews/sta

has released an improved mitigation method to prevent exploitation attempts against recently disclosed unpatched Exchange server vulnerabilities (CVE-2022-41040 and CVE-2022-41082).

Read: thehackernews.com/2022/10/micr

#microsoft #infosec #cybersecurity #hacking #ProxyNotShell

Last updated 2 years ago

ENISA · @enisa_eu
71 followers · 621 posts · Server respublicae.eu
CyberSec_EU 🇪🇺 · @Cybersec_EU
84 followers · 122 posts · Server respublicae.eu