#proxynotshell — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #proxynotshell, aggregated by home.social.
-
China-linked hackers exploit Microsoft Exchange in Azerbaijani energy firm attacks.
A group of China-linked hackers, known as FamousSparrow, launched a sustained cyberattack on an Azerbaijani oil and gas company, exploiting Microsoft Exchange vulnerabilities in a multi-wave intrusion that spanned three months. The attackers used the ProxyNotShell exploit to gain and maintain access to…
#ChinalinkedHackers #MicrosoftExchange #Proxynotshell #Famoussparrow #EarthEstries
-
Later today, the UK government plan to link the Microsoft Exchange #ProxyNotShell incident at the Electoral Commission to China. https://doublepulsar.com/uk-electoral-commission-had-an-unpatched-microsoft-exchange-server-vulnerability-5436f3f5ec2c
Edit: I should say, they might have got caught up in ProxyShell too.
-
Later today, the UK government plan to link the Microsoft Exchange #ProxyNotShell incident at the Electoral Commission to China. https://doublepulsar.com/uk-electoral-commission-had-an-unpatched-microsoft-exchange-server-vulnerability-5436f3f5ec2c
Edit: I should say, they might have got caught up in ProxyShell too.
-
Later today, the UK government plan to link the Microsoft Exchange #ProxyNotShell incident at the Electoral Commission to China. https://doublepulsar.com/uk-electoral-commission-had-an-unpatched-microsoft-exchange-server-vulnerability-5436f3f5ec2c
Edit: I should say, they might have got caught up in ProxyShell too.
-
Later today, the UK government plan to link the Microsoft Exchange #ProxyNotShell incident at the Electoral Commission to China. https://doublepulsar.com/uk-electoral-commission-had-an-unpatched-microsoft-exchange-server-vulnerability-5436f3f5ec2c
Edit: I should say, they might have got caught up in ProxyShell too.
-
Later today, the UK government plan to link the Microsoft Exchange #ProxyNotShell incident at the Electoral Commission to China. https://doublepulsar.com/uk-electoral-commission-had-an-unpatched-microsoft-exchange-server-vulnerability-5436f3f5ec2c
Edit: I should say, they might have got caught up in ProxyShell too.
-
#ProxyNotShell in Exchange Server fingered in UK Electoral Commission hack.
TechCrunch found Electoral Commission were using on prem Exchange.
I had a look via @shodan history feature - their Exchange Server, with OWA enabled, was online until later in 2022 (when the incident began) - and didn't have ProxyNotShell patches installed, as Microsoft hadn't released them.
The mitigations MS released were bypassable, as seen in the Rackspace Hosted Exchange hack.
https://techcrunch.com/2023/08/09/parsing-uk-electoral-commission-cyberattack/
-
#ProxyNotShell in Exchange Server fingered in UK Electoral Commission hack.
TechCrunch found Electoral Commission were using on prem Exchange.
I had a look via @shodan history feature - their Exchange Server, with OWA enabled, was online until later in 2022 (when the incident began) - and didn't have ProxyNotShell patches installed, as Microsoft hadn't released them.
The mitigations MS released were bypassable, as seen in the Rackspace Hosted Exchange hack.
https://techcrunch.com/2023/08/09/parsing-uk-electoral-commission-cyberattack/
-
#ProxyNotShell in Exchange Server fingered in UK Electoral Commission hack.
TechCrunch found Electoral Commission were using on prem Exchange.
I had a look via @shodan history feature - their Exchange Server, with OWA enabled, was online until later in 2022 (when the incident began) - and didn't have ProxyNotShell patches installed, as Microsoft hadn't released them.
The mitigations MS released were bypassable, as seen in the Rackspace Hosted Exchange hack.
https://techcrunch.com/2023/08/09/parsing-uk-electoral-commission-cyberattack/
-
#ProxyNotShell in Exchange Server fingered in UK Electoral Commission hack.
TechCrunch found Electoral Commission were using on prem Exchange.
I had a look via @shodan history feature - their Exchange Server, with OWA enabled, was online until later in 2022 (when the incident began) - and didn't have ProxyNotShell patches installed, as Microsoft hadn't released them.
The mitigations MS released were bypassable, as seen in the Rackspace Hosted Exchange hack.
https://techcrunch.com/2023/08/09/parsing-uk-electoral-commission-cyberattack/
-
#ProxyNotShell in Exchange Server fingered in UK Electoral Commission hack.
TechCrunch found Electoral Commission were using on prem Exchange.
I had a look via @shodan history feature - their Exchange Server, with OWA enabled, was online until later in 2022 (when the incident began) - and didn't have ProxyNotShell patches installed, as Microsoft hadn't released them.
The mitigations MS released were bypassable, as seen in the Rackspace Hosted Exchange hack.
https://techcrunch.com/2023/08/09/parsing-uk-electoral-commission-cyberattack/
-
#ProxyShell & Co.: #Microsoft gibt Tipps, um #Exchange Server abzusichern | heise online https://www.heise.de/news/ProxyShell-Co-Microsoft-gibt-Tipps-um-Exchange-Server-abzusichern-7472639.html #MicrosoftExchange #ProxyNotShell
-
#ProxyShell & Co.: #Microsoft gibt Tipps, um #Exchange Server abzusichern | heise online https://www.heise.de/news/ProxyShell-Co-Microsoft-gibt-Tipps-um-Exchange-Server-abzusichern-7472639.html #MicrosoftExchange #ProxyNotShell
-
Beim #Cloud-Anbieter #Rackspace hat die Play-#Ransomware zugeschlagen | heise online https://www.heise.de/news/Beim-Cloud-Anbieter-Rackspace-hat-die-Play-Ransomware-zugeschlagen-7450344.html #ProxyNotShell #Malware #MicrosoftExchange
-
Beim #Cloud-Anbieter #Rackspace hat die Play-#Ransomware zugeschlagen | heise online https://www.heise.de/news/Beim-Cloud-Anbieter-Rackspace-hat-die-Play-Ransomware-zugeschlagen-7450344.html #ProxyNotShell #Malware #MicrosoftExchange
-
Die seit September bekannte Schwachstelle #ProxyNotShell von #Microsoft #ExchangeServer ist auf hunderten Servern in der #Schweiz nicht behoben worden. #Patch steht längst zur Verfügung.
Gleichzeitig sei #ITSecurity die oberste Priorität der #CIO.🤔
http://www.netzwoche.ch/news/2022-12-07/die-plaene-der-schweizer-cios-fuer-2023 (siehe Grafik im Artikel)
-
Die seit September bekannte Schwachstelle #ProxyNotShell von #Microsoft #ExchangeServer ist auf hunderten Servern in der #Schweiz nicht behoben worden. #Patch steht längst zur Verfügung.
Gleichzeitig sei #ITSecurity die oberste Priorität der #CIO.🤔
http://www.netzwoche.ch/news/2022-12-07/die-plaene-der-schweizer-cios-fuer-2023 (siehe Grafik im Artikel)
-
Die seit September bekannte Schwachstelle #ProxyNotShell von #Microsoft #ExchangeServer ist auf hunderten Servern in der #Schweiz nicht behoben worden. #Patch steht längst zur Verfügung.
Gleichzeitig sei #ITSecurity die oberste Priorität der #CIO.🤔
http://www.netzwoche.ch/news/2022-12-07/die-plaene-der-schweizer-cios-fuer-2023 (siehe Grafik im Artikel)
-
On Dec 22, 2022, Unit42 released a threat brief on the new OWASSRF exploit method for Microsoft Exchange Server published by CrowdStrike
Threat Brief: OWASSRF Vulnerability Exploitation
https://unit42.paloaltonetworks.com/threat-brief-owassrf/
#OWASSRF #ProxyNotShell #Cybersecurity #CyberThreatIntelligence
-
On Dec 22, 2022, Unit42 released a threat brief on the new OWASSRF exploit method for Microsoft Exchange Server published by CrowdStrike
Threat Brief: OWASSRF Vulnerability Exploitation
https://unit42.paloaltonetworks.com/threat-brief-owassrf/
#OWASSRF #ProxyNotShell #Cybersecurity #CyberThreatIntelligence
-
On Dec 22, 2022, Unit42 released a threat brief on the new OWASSRF exploit method for Microsoft Exchange Server published by CrowdStrike
Threat Brief: OWASSRF Vulnerability Exploitation
https://unit42.paloaltonetworks.com/threat-brief-owassrf/
#OWASSRF #ProxyNotShell #Cybersecurity #CyberThreatIntelligence
-
On Dec 22, 2022, Unit42 released a threat brief on the new OWASSRF exploit method for Microsoft Exchange Server published by CrowdStrike
Threat Brief: OWASSRF Vulnerability Exploitation
https://unit42.paloaltonetworks.com/threat-brief-owassrf/
#OWASSRF #ProxyNotShell #Cybersecurity #CyberThreatIntelligence
-
Wie die #HAW #Hamburg geransomwared wurde? Vielleicht so:
haw-mailer.haw-hamburg.de (15.11.2022)
Found Exchange server:
Build: 15.1.2507.13
Version: 2016CU23+KB5019077
Build date: 10/2022
Affected by CVE-2022-41040
Affected by CVE-2022-41082
Affected by CVE-2022-41078
Affected by CVE-2022-41123
Affected by CVE-2022-41079
Affected by CVE-2022-41080[via @leakix] #OWASSRF #ProxyNotShell
-
Wie die #HAW #Hamburg geransomwared wurde? Vielleicht so:
haw-mailer.haw-hamburg.de (15.11.2022)
Found Exchange server:
Build: 15.1.2507.13
Version: 2016CU23+KB5019077
Build date: 10/2022
Affected by CVE-2022-41040
Affected by CVE-2022-41082
Affected by CVE-2022-41078
Affected by CVE-2022-41123
Affected by CVE-2022-41079
Affected by CVE-2022-41080[via @leakix] #OWASSRF #ProxyNotShell
-
Wie die #HAW #Hamburg geransomwared wurde? Vielleicht so:
haw-mailer.haw-hamburg.de (15.11.2022)
Found Exchange server:
Build: 15.1.2507.13
Version: 2016CU23+KB5019077
Build date: 10/2022
Affected by CVE-2022-41040
Affected by CVE-2022-41082
Affected by CVE-2022-41078
Affected by CVE-2022-41123
Affected by CVE-2022-41079
Affected by CVE-2022-41080[via @leakix] #OWASSRF #ProxyNotShell
-
Wie die #HAW #Hamburg geransomwared wurde? Vielleicht so:
haw-mailer.haw-hamburg.de (15.11.2022)
Found Exchange server:
Build: 15.1.2507.13
Version: 2016CU23+KB5019077
Build date: 10/2022
Affected by CVE-2022-41040
Affected by CVE-2022-41082
Affected by CVE-2022-41078
Affected by CVE-2022-41123
Affected by CVE-2022-41079
Affected by CVE-2022-41080[via @leakix] #OWASSRF #ProxyNotShell
-
Wie die #HAW #Hamburg geransomwared wurde? Vielleicht so:
haw-mailer.haw-hamburg.de (15.11.2022)
Found Exchange server:
Build: 15.1.2507.13
Version: 2016CU23+KB5019077
Build date: 10/2022
Affected by CVE-2022-41040
Affected by CVE-2022-41082
Affected by CVE-2022-41078
Affected by CVE-2022-41123
Affected by CVE-2022-41079
Affected by CVE-2022-41080[via @leakix] #OWASSRF #ProxyNotShell
-
#PlayRansomware's new exploit method to bypass mitigations to #ProxyNotShell is very interesting. I am going to need to build some new IOC for this.
#cybersecurityhttps://www.crowdstrike.com/blog/owassrf-exploit-analysis-and-recommendations/
-
#PlayRansomware's new exploit method to bypass mitigations to #ProxyNotShell is very interesting. I am going to need to build some new IOC for this.
#cybersecurityhttps://www.crowdstrike.com/blog/owassrf-exploit-analysis-and-recommendations/
-
Flinke beschuldiging van #Rackspace: de mitigations die #Microsoft had aanbevolen voor de Exchange-kwetsbaarheid #ProxyNotShell zijn te omzeilen, wat de reden zou zijn dat Rackspace in december getroffen is door een grote cyberaanval. Het bedrijf installeerde de patch namelijk niet, maar vertrouwde op die mitigations.
-
Flinke beschuldiging van #Rackspace: de mitigations die #Microsoft had aanbevolen voor de Exchange-kwetsbaarheid #ProxyNotShell zijn te omzeilen, wat de reden zou zijn dat Rackspace in december getroffen is door een grote cyberaanval. Het bedrijf installeerde de patch namelijk niet, maar vertrouwde op die mitigations.
-
Flinke beschuldiging van #Rackspace: de mitigations die #Microsoft had aanbevolen voor de Exchange-kwetsbaarheid #ProxyNotShell zijn te omzeilen, wat de reden zou zijn dat Rackspace in december getroffen is door een grote cyberaanval. Het bedrijf installeerde de patch namelijk niet, maar vertrouwde op die mitigations.
-
Flinke beschuldiging van #Rackspace: de mitigations die #Microsoft had aanbevolen voor de Exchange-kwetsbaarheid #ProxyNotShell zijn te omzeilen, wat de reden zou zijn dat Rackspace in december getroffen is door een grote cyberaanval. Het bedrijf installeerde de patch namelijk niet, maar vertrouwde op die mitigations.
-
Flinke beschuldiging van #Rackspace: de mitigations die #Microsoft had aanbevolen voor de Exchange-kwetsbaarheid #ProxyNotShell zijn te omzeilen, wat de reden zou zijn dat Rackspace in december getroffen is door een grote cyberaanval. Het bedrijf installeerde de patch namelijk niet, maar vertrouwde op die mitigations.
-
Hostingreus Rackspace had de grote #Exchange-kwetsbaarheid #ProxyNotShell niet gepatcht, maar vertrouwde op beperkende maatregelen van #Microsoft. Die mitigations zijn echter te omzeilen, wat de softwareleverancier volgens Rackspace níet heeft aangegeven.
https://www.agconnect.nl/artikel/rackspace-beschuldigt-microsoft-indirect-van-grote-ransomware-aanval -
Hostingreus Rackspace had de grote #Exchange-kwetsbaarheid #ProxyNotShell niet gepatcht, maar vertrouwde op beperkende maatregelen van #Microsoft. Die mitigations zijn echter te omzeilen, wat de softwareleverancier volgens Rackspace níet heeft aangegeven.
https://www.agconnect.nl/artikel/rackspace-beschuldigt-microsoft-indirect-van-grote-ransomware-aanval -
Hostingreus Rackspace had de grote #Exchange-kwetsbaarheid #ProxyNotShell niet gepatcht, maar vertrouwde op beperkende maatregelen van #Microsoft. Die mitigations zijn echter te omzeilen, wat de softwareleverancier volgens Rackspace níet heeft aangegeven.
https://www.agconnect.nl/artikel/rackspace-beschuldigt-microsoft-indirect-van-grote-ransomware-aanval -
Hostingreus Rackspace had de grote #Exchange-kwetsbaarheid #ProxyNotShell niet gepatcht, maar vertrouwde op beperkende maatregelen van #Microsoft. Die mitigations zijn echter te omzeilen, wat de softwareleverancier volgens Rackspace níet heeft aangegeven.
https://www.agconnect.nl/artikel/rackspace-beschuldigt-microsoft-indirect-van-grote-ransomware-aanval -
Erstaunlich, dass nach zwei Monaten immer noch so viele Server nicht gepatcht sind...
Jetzt patchen! Noch 60.000 #Exchange-Server für #ProxyNotShell-Attacken anfällig | heise online https://www.heise.de/news/Jetzt-patchen-Noch-60-000-Exchange-Server-fuer-ProxyNotShell-Attacken-anfaellig-7448029.html #Microsoft #MicrosoftExchange
-
Erstaunlich, dass nach zwei Monaten immer noch so viele Server nicht gepatcht sind...
Jetzt patchen! Noch 60.000 #Exchange-Server für #ProxyNotShell-Attacken anfällig | heise online https://www.heise.de/news/Jetzt-patchen-Noch-60-000-Exchange-Server-fuer-ProxyNotShell-Attacken-anfaellig-7448029.html #Microsoft #MicrosoftExchange
-
Jetzt patchen! Noch 60.000 Exchange-Server für ProxyNotShell-Attacken anfällig
Sicherheitsforscher warnen vor verwundbaren Exchange-Servern. 30.000 davon sind in Europa – der Großteil in Deutschland. Sicherheitspatches sind verfügbar.
#MicrosoftExchange #Patches #ProxyNotShell #Security #Sicherheitslücken #Updates #News
-
Jetzt patchen! Noch 60.000 Exchange-Server für ProxyNotShell-Attacken anfällig
Sicherheitsforscher warnen vor verwundbaren Exchange-Servern. 30.000 davon sind in Europa – der Großteil in Deutschland. Sicherheitspatches sind verfügbar.
#MicrosoftExchange #Patches #ProxyNotShell #Security #Sicherheitslücken #Updates #News
-
Jetzt patchen! Noch 60.000 Exchange-Server für ProxyNotShell-Attacken anfällig
Sicherheitsforscher warnen vor verwundbaren Exchange-Servern. 30.000 davon sind in Europa – der Großteil in Deutschland. Sicherheitspatches sind verfügbar.
#MicrosoftExchange #Patches #ProxyNotShell #Security #Sicherheitslücken #Updates #News
-
Jetzt patchen! Noch 60.000 Exchange-Server für ProxyNotShell-Attacken anfällig
Sicherheitsforscher warnen vor verwundbaren Exchange-Servern. 30.000 davon sind in Europa – der Großteil in Deutschland. Sicherheitspatches sind verfügbar.
#MicrosoftExchange #Patches #ProxyNotShell #Security #Sicherheitslücken #Updates #News
-
Jetzt patchen! Noch 60.000 Exchange-Server für ProxyNotShell-Attacken anfällig
Sicherheitsforscher warnen vor verwundbaren Exchange-Servern. 30.000 davon sind in Europa – der Großteil in Deutschland. Sicherheitspatches sind verfügbar.
#MicrosoftExchange #Patches #ProxyNotShell #Security #Sicherheitslücken #Updates #News
-
The latest A Daily Dose of PowerShell! https://paper.li/doctordns/1580827252?edition_id=a2cecef0-89e2-11ed-98b5-fa163eed9ef2 Thanks to @[email protected] #proxynotshell #powershell
-
The latest A Daily Dose of PowerShell! https://paper.li/doctordns/1580827252?edition_id=a2cecef0-89e2-11ed-98b5-fa163eed9ef2 Thanks to @[email protected] #proxynotshell #powershell
-
The latest A Daily Dose of PowerShell! https://paper.li/doctordns/1580827252?edition_id=a2cecef0-89e2-11ed-98b5-fa163eed9ef2 Thanks to @[email protected] #proxynotshell #powershell
-
The latest A Daily Dose of PowerShell! https://paper.li/doctordns/1580827252?edition_id=a2cecef0-89e2-11ed-98b5-fa163eed9ef2 Thanks to @[email protected] #proxynotshell #powershell
-
The latest A Daily Dose of PowerShell! https://paper.li/doctordns/1580827252?edition_id=a2cecef0-89e2-11ed-98b5-fa163eed9ef2 Thanks to @[email protected] #proxynotshell #powershell