📰 Exchange Server News
Page 57 - Exchange Server News Today
Fast, Ad-Free News Updates
Stay updated with breaking news from Exchange Server. Real-time updates on events, politics, business and more.
April 19, 2021
Would move for The Greater Good™ actually be good, though? Gareth Corfield Mon 19 Apr 2021 // 09:39 UTC Share Copy Comment UK authorities could lawfully copy the FBI and forcibly remove web shells from compromised Microsoft Exchange server deployments – but some members of the British infosec industry are remarkably quiet about whether this would be a good thing. In the middle of last week the American authorities made waves after deleting web shells from Exchange Se...
April 18, 2021
Apr 18, 2021 07:40 EDT with 0 comments In the last seven days, Microsoft unveiled its latest Surface Laptop (and a number of other peripherals), acquired Nuance Communications for a cool $19.7 billion, and even pushed out a number of updates for Windows and first-party games. You can find info about that, as well as much more below, in your Microsoft digest for the week of April 11 - 17. New Surface devices Swapping out the Cobalt Blue variant for an Ice Blue color, the Laptop 4 n...
April 16, 2021
Crash of production server leads to FBI case, despite modest losses A US software developer faces computer sabotage charges after he was arrested over allegations that he planted malicious code on his former employer’s computer servers. Davis Lu, 51, of Houston, Texas, has been indicted over one count of damaging protected computers following his arrest on Wednesday (April 14). The case dates back to computer problems that the as-yet-unnamed Cleveland, Ohio-based start-up experienced on Augus...
April 16, 2021
Figuring out SolarWinds hack as US sanctions Russia
April 16, 2021
minute read Share this article: Matt Bromiley, senior principal consultant with Mandiant, offers checklists for how small- and medium-sized businesses (SMBs) can identify and clear ProxyLogon Microsoft Exchange infections. Recently, the public learned of multiple vulnerabilities (“ProxyLogon”) that impacted Microsoft’s on-premises Exchange Server, a software application used worldwide to manage communications between employees. Since then, many in the security industry have c...
April 16, 2021
In a few minutes I’ll talk with this week’s guest commentator, Dinah Davis, vice president of research and development of managed security services provider Arctic Wolf. But first a look back at some of the news this week: Four more serious vulnerabilities have been found in on-premise versions of Microsoft Exchange. That means – again – IT departments have to make sure the latest patches are installed as soon as possible. This comes after Microsoft released emergency patches last mo...
April 16, 2021
News of ransomware activity first emerged on March 12, only 10 days after Microsoft released the patches, and it arrived as researchers noticed an uptick in ransomware attacks following the disclosure of the Exchange Server zero-days. In the week ending March 30, the number of attacks involving the Exchange Server flaws had tripled to more than 50,000 around the world. Check Point Research reports the industries most targeted in these attacks include government and military, manufacturing, an...
April 15, 2021
U.S. Attorney General Merrick Garland arrives to address the staff on his first day at the Department of Justice March 11, 2021 in Washington, DC. The decision by Justice to dismantle âhundredsâ of web shells installed using Exchange Server vulnerabilities is being hailed as a landmark use of a new authority. (Photo by Kevin Dietsch-Pool/Getty Images) The decision by the Department of Justice announced Tuesday to dismantle âhundredsâ of web shells installed using Exchange Se...
April 15, 2021
Reseller News Join Reseller News Sign up to gain exclusive access to email subscriptions, event invitations, competitions, giveaways, and much more.Sign up now Microsoft urges businesses to apply latest Exchange patches New vulnerabilities are CVE-2021-28480 and CVE-2021-28481, both remote code execution vulnerabilities in Exchange. Credit: Dreamstime Microsoft is urging businesses to patch their Exchange software with the latest April updates from the vendor to protect against n...
April 15, 2021
The two flaws are CVE-2021-21220, which is based on insufficient validation of untrusted input in the V8 JavaScript rendering engine, and CVE-2021-21206, which is a use-after-free bug in the Blink browser engine. Hackers are exploiting these two flaws to execute code in a victim’s web browser, but depending on the privileges tied with the browser, an attacker could also view, change, or delete data. The former vulnerability was demonstrated by Dataflow Security researchers Bruno Keith and Nik...