Most Viewed Content:

How much does ChatGPT cost? $2-12 million per training for large models

ChatGPT took the world by storm, technology giants have...

TechInsights: Lenovo-Motorola Q4 2022 smartphone shipments down, average selling price up

TechInsights (formerly Strategy Analytics) released a report today that...

Microsoft suspends push of KB5007651 update to Windows 11, acknowledges LSA bug issue

Microsoft released the KB5007651 update for Windows Defender in...

Microsoft: two new Exchange zero-day vulnerabilities have been actively attacked

Microsoft has confirmed that two unpatched Exchange server zero-day vulnerabilities are being exploited by cybercriminals in real-world attacks. The flaws were first discovered in August 2022 by Vietnamese cybersecurity firm GTSC as part of its response to a customer cybersecurity incident, which said the two zero-day vulnerabilities had been used in attacks on its customers’ environments dating back to early August 2022.

In a blog post late Thursday, the Microsoft Security Response Center (MRSC) said the two vulnerabilities, identified as CVE-2022-41040, are a server-side request forgery (SSRF) vulnerability, while the second, identified as CVE-2022-41082, allows execution on a vulnerable server when PowerShell is accessed by an attacker remote code.

“At this time, Microsoft believes there are limited targeted attacks to exploit these two vulnerabilities to gain access to user systems,” Microsoft said, noting that an attacker would need authenticated access to a vulnerable Exchange server, such as stealing credentials, to successfully exploit either of the two vulnerabilities, which affects on-premises Microsoft Exchange Server 2013, 2016 and 2019.

Microsoft did not share any further details about these attacks, and security firm Trend Micro gave the two vulnerabilities a severity rating of 8.8 and 6.3 out of 10.

However, GTSC reported that cybercriminals linked the two vulnerabilities together to create backdoors on the victim’s system, and could also move laterally through the network being attacked. Having successfully mastered the vulnerability can gather information and establish a foothold in the victim’s system.

Security researcher Kevin Beaumont, who was one of the first to discuss the GTSC findings in a series of tweets on Thursday, said he was aware that the vulnerability was “actively being exploited externally” and that he “can confirm that a large number of Exchange servers have fallen”.

Microsoft declined to say when the patch would be available, but noted in its blog post that the upcoming fix is on an “accelerated timeline”.

Until then, the company advises customers to follow the interim mitigation measures shared by GTSC, which include adding a blocking rule to the IIS manager. The company noted that Exchange Online customers do not need to take any action at this time, as the zero-day event only affects internal Exchange servers.

Latest

AMD’s small and large core Phoenix operation chart revealed: performance core up to 5.0GHz

AMD official documents appeared Phoenix "hybrid architecture" processor information,...

Gurman: Apple’s first AR/ VR headset first-year sales estimate of 1 million units

Bloomberg's Mark Gurman in the latest "Power On" newsletter,...

Samsung is developing Dream Galaxy Exynos processor for Galaxy S25 series

The latest tweet from reliable source Revegnuse says that...

LG launched Gram Style 2023 laptop : Sports 2.8K OLED screen, Priced 9999 CNY

LG today launched a new laptop - Gram Style...
spot_img

Newsletter

Don't miss

AMD’s small and large core Phoenix operation chart revealed: performance core up to 5.0GHz

AMD official documents appeared Phoenix "hybrid architecture" processor information,...

Gurman: Apple’s first AR/ VR headset first-year sales estimate of 1 million units

Bloomberg's Mark Gurman in the latest "Power On" newsletter,...

Samsung is developing Dream Galaxy Exynos processor for Galaxy S25 series

The latest tweet from reliable source Revegnuse says that...

LG launched Gram Style 2023 laptop : Sports 2.8K OLED screen, Priced 9999 CNY

LG today launched a new laptop - Gram Style...

Tesla launches official car sticker decal service: applicable to Model 3 / Y models

Recently, Tesla officially launched two car stickers, which are...
Threza Gabriel
Threza Gabrielhttps://www.techgoing.com
TechGoing is a global tech media to brings you the latest technology stories, including smartphones, electric vehicles, smart home devices, gaming, wearable gadgets, and all tech trending.
spot_imgspot_img

Cybertruck-inspired owner uses Tesla Model 3 parts to build ‘CyberRoadster’ sports car

A Tesla owner created a very cool electric car DIY project, the idea of this project is simple: combine a supercar and Cybertruck, what...

Pitaka launches carbon fiber strap for Samsung Galaxy Watch 4/5 series watches

Samsung has released some first-party bands for the Galaxy Watch smartwatch, including a basic silicone band and a rich metal band. In addition, Samsung...

Ericsson and MediaTek set new record for 5G downlink speed of 4.36 Gbps

According to daily news, recently, Ericsson and MediaTek successfully realized the aggregation of four carriers, including one frequency division duplex (FDD) carrier and three...