Get a Pentest and security assessment of your IT network.

Cyber Security

Microsoft Confirms Serious ‘PrivExchange’ Vulnerability

Microsoft acknowledged an elevated privilege flaw in its Exchange Server could allow a remote attacker with a simple mailbox account to gain administrator privileges. The flaw exists due to a perfect storm of default settings in Microsoft Exchange Server and the mail server and calendaring server that run on Windows Server operating systems. Microsoft has not issued a patch to fix the bug, but there are workaround fixes. Microsoft did not respond to a request for comment from Threatpost on when the upcoming fix would be released; they have seen the vulnerability being exploited in the wild.

Source: https://threatpost.com/microsoft-confirms-serious-privexchange-vulnerability/141553/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security