Dec. 21, 2022, 10:09 a.m. | Cristian Neagu

Heimdal Security Blog heimdalsecurity.com

A group of threat actors known as Play ransomware is using a new exploit in Microsoft Exchange to breach servers. The exploit chain bypasses ProxyNotShell URL rewrite mitigations to gain remote code execution (RCE) on vulnerable servers. The ransomware operators used Remote PowerShell to misuse CVE-2022-41082, the same flaw that ProxyNotShell used to execute arbitrary […]


The post New Microsoft Exchange Exploit Used by Ransomware Gang to Breach Servers appeared first on Heimdal Security Blog.

breach cybersecurity news exchange exploit microsoft microsoft exchange ransomware ransomware gang servers

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Digital Trust Cyber Transformation Senior

@ KPMG India | Mumbai, Maharashtra, India

Security Consultant, Assessment Services - SOC 2 | Remote US

@ Coalfire | United States

Sr. Systems Security Engineer

@ Effectual | Washington, DC

Cyber Network Engineer

@ SonicWall | Woodbridge, Virginia, United States

Security Architect

@ Nokia | Belgium