home.social

#owassrf — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #owassrf, aggregated by home.social.

  1. On Dec 22, 2022, Unit42 released a threat brief on the new OWASSRF exploit method for Microsoft Exchange Server published by CrowdStrike

    Threat Brief: OWASSRF Vulnerability Exploitation

    unit42.paloaltonetworks.com/th

    #OWASSRF #ProxyNotShell #Cybersecurity #CyberThreatIntelligence

  2. On Dec 22, 2022, Unit42 released a threat brief on the new OWASSRF exploit method for Microsoft Exchange Server published by CrowdStrike

    Threat Brief: OWASSRF Vulnerability Exploitation

    unit42.paloaltonetworks.com/th

    #OWASSRF #ProxyNotShell #Cybersecurity #CyberThreatIntelligence

  3. On Dec 22, 2022, Unit42 released a threat brief on the new OWASSRF exploit method for Microsoft Exchange Server published by CrowdStrike

    Threat Brief: OWASSRF Vulnerability Exploitation

    unit42.paloaltonetworks.com/th

    #OWASSRF #ProxyNotShell #Cybersecurity #CyberThreatIntelligence

  4. On Dec 22, 2022, Unit42 released a threat brief on the new OWASSRF exploit method for Microsoft Exchange Server published by CrowdStrike

    Threat Brief: OWASSRF Vulnerability Exploitation

    unit42.paloaltonetworks.com/th

    #OWASSRF #ProxyNotShell #Cybersecurity #CyberThreatIntelligence

  5. Wie die #HAW #Hamburg geransomwared wurde? Vielleicht so:

    haw-mailer.haw-hamburg.de (15.11.2022)

    Found Exchange server:
    Build: 15.1.2507.13
    Version: 2016CU23+KB5019077
    Build date: 10/2022
    Affected by CVE-2022-41040
    Affected by CVE-2022-41082
    Affected by CVE-2022-41078
    Affected by CVE-2022-41123
    Affected by CVE-2022-41079
    Affected by CVE-2022-41080

    [via @leakix] #OWASSRF #ProxyNotShell

  6. Wie die #HAW #Hamburg geransomwared wurde? Vielleicht so:

    haw-mailer.haw-hamburg.de (15.11.2022)

    Found Exchange server:
    Build: 15.1.2507.13
    Version: 2016CU23+KB5019077
    Build date: 10/2022
    Affected by CVE-2022-41040
    Affected by CVE-2022-41082
    Affected by CVE-2022-41078
    Affected by CVE-2022-41123
    Affected by CVE-2022-41079
    Affected by CVE-2022-41080

    [via @leakix] #OWASSRF #ProxyNotShell

  7. Wie die #HAW #Hamburg geransomwared wurde? Vielleicht so:

    haw-mailer.haw-hamburg.de (15.11.2022)

    Found Exchange server:
    Build: 15.1.2507.13
    Version: 2016CU23+KB5019077
    Build date: 10/2022
    Affected by CVE-2022-41040
    Affected by CVE-2022-41082
    Affected by CVE-2022-41078
    Affected by CVE-2022-41123
    Affected by CVE-2022-41079
    Affected by CVE-2022-41080

    [via @leakix] #OWASSRF #ProxyNotShell

  8. Wie die #HAW #Hamburg geransomwared wurde? Vielleicht so:

    haw-mailer.haw-hamburg.de (15.11.2022)

    Found Exchange server:
    Build: 15.1.2507.13
    Version: 2016CU23+KB5019077
    Build date: 10/2022
    Affected by CVE-2022-41040
    Affected by CVE-2022-41082
    Affected by CVE-2022-41078
    Affected by CVE-2022-41123
    Affected by CVE-2022-41079
    Affected by CVE-2022-41080

    [via @leakix] #OWASSRF #ProxyNotShell

  9. Wie die #HAW #Hamburg geransomwared wurde? Vielleicht so:

    haw-mailer.haw-hamburg.de (15.11.2022)

    Found Exchange server:
    Build: 15.1.2507.13
    Version: 2016CU23+KB5019077
    Build date: 10/2022
    Affected by CVE-2022-41040
    Affected by CVE-2022-41082
    Affected by CVE-2022-41078
    Affected by CVE-2022-41123
    Affected by CVE-2022-41079
    Affected by CVE-2022-41080

    [via @leakix] #OWASSRF #ProxyNotShell

  10. We have observed exploitation attempts for a new exploit method for Microsoft Exchange Server, #OWASSRF. In all the attempts we observed, threat actors used a PowerShell backdoor, which we track as #SilverArrow.
    bit.ly/3WnFbQe