#MicrosoftExchange
NightEagle (APT-Q-95) has expanded from Asia to Russian companies, using stolen VPN credentials, GhostContainer on Exchange, BlueKeep exploitation, and tunneling to persist and move laterally. #Russia #NightEagle #APTQ95
NightEagle Targets Russian Companies
Kaspersky GERT reported that NightEagle (APT-Q-95) expanded its operations from Asia to Russian businesses, using stolen VPN credentials, GhostContainer on Microsoft Exchange, and multiple tunneling and lateral-movement techniques. The campaign also involved BlueKeep exploitation, DCSync-related activity, and tooling hosted under disguised GitHub repositories to maintain access and move across internal networks. #NightEagle #APTQ95 #GhostContainer #MicrosoftExchange #BlueKeep #DCSync
www.hendryadrian.com
September 16, 2026 at 12:15 PM
📢 CVE-2026-62911 : vulnérabilité critique d'élévation de privilèges dans Microsoft Exchange avec PoC public

📰 Source : LeMagIT — Article publié le 26 août 2026, relatant une vulnérabilité Exchange divulguée lors du Patch…

🟡 vérification factuelle moyenne
#MicrosoftExchange #PoCPublic #Cyberveille
CVE-2026-62911 : vulnérabilité critique d'élévation de privilèges dans Microsoft Exchange avec PoC public
📰 Source : LeMagIT — Article publié le 26 août 2026, relatant une vulnérabilité Exchange divulguée lors du Patch Tuesday de Microsoft du 11 août 2026. 🔍 Contexte : Le Patch Tuesday d'août 2026 de Microsoft est décrit comme le plus volumineux à ce jour, couvrant 421 vulnérabilités, dont 7 affectant Microsoft Exchange.
cyberveille.ch
September 4, 2026 at 4:30 PM
Nearly 22,000 Microsoft Exchange servers remain unpatched for CVE-2026-62911, a critical auth bypass that can enable privilege escalation. The US and Germany have the most exposed systems. #MicrosoftExchange #Germany #US
Nearly 22,000 Microsoft Exchange Servers Remain Exposed To Critical Security Flaw (CVE-2026-62911)
Nearly 22,000 Microsoft Exchange servers are still unpatched against CVE-2026-62911, a critical authentication bypass flaw that can let an authorized attacker elevate privileges over the network. The United States and Germany have the highest numbers of vulnerable servers, while NCSC-NL and BSI have urged immediate patching as a working exploit is reportedly circulating online. #CVE-2026-62911 #MicrosoftExchangeServer #NCSC-NL #BSI #OrangeTsai #DEVCOREResearchTeam #TrendMicroZeroDayInitiative
www.hendryadrian.com
September 3, 2026 at 4:00 AM
Let's talk about your email security.

https://mjetechnologies.com

Full story:
https://www.bleepingcomputer.com/news/security/nearly-22-000-microsoft-exchange-servers-vulnerable-to-hijack-attacks/

#MicrosoftExchange #AuthBypass #EmailSecurity #PatchManagement #MJETechnologies #BusinessFirstTechnol
September 2, 2026 at 1:22 PM
🔴 CVE-2026-62911 — Microsoft Exchange at risk

Public PoC is now available while 21,899 Internet-facing Exchange servers remain vulnerable. No confirmed mass exploitation yet — but the window is closing.

stemshop.top/blog/cve-202...

#CVE #CVE202662911 #MicrosoftExchange #PoC #CyberSecurity
CVE-2026-62911 — Exchange PoC Published, Nearly 22,000 Servers Exposed
A public PoC is available for Microsoft Exchange CVE-2026-62911 while nearly 22,000 Internet-facing Exchange servers remain vulnerable.
stemshop.top
September 2, 2026 at 4:47 AM
September 1, 2026 at 12:41 PM
August 18, 2026 at 1:00 AM
August 8, 2026 at 1:00 AM
📰 Hacker Rusia Eksploitasi Zero-Day Exchange OWA untuk Mempertahankan Akses ke Kotak Email Korban

👉 Baca artikel lengkap di sini: https://ahmandonk.com/2026/08/03/zero-day-exchange-owa-owareaper-rusia/

#apt
##apta#keamananSibera#malwareo#microsoftExchangeo#outlookWebAccess##owaa#rusia-#zero
August 3, 2026 at 6:52 AM
July 31, 2026 at 6:00 PM
July 30, 2026 at 8:17 AM
Russian hackers are exploiting a new Exchange OWA XSS flaw in half-click email attacks, deploying OWAReaper for long-term mailbox access across U.S. and European government and industry targets. #Russia #Exchange #OWAReaper
Russian hackers exploit Exchange OWA zero-day for long-term mailbox access
Laundry Bear, also tracked as Void Blizzard and TA488, is using the CVE-2026-42897 Outlook Web Access XSS flaw in half-click email attacks to deliver the OWAReaper backdoor. The campaign targets government and industry organizations across the U.S. and Europe and uses advanced persistence, credential theft, and multi-channel command-and-control to maintain long-term mailbox access. #LaundryBear #VoidBlizzard #TA488 #CVE-2026-42897 #OWAReaper #MicrosoftExchange #OutlookWebAccess
www.hendryadrian.com
July 30, 2026 at 1:45 AM
July 25, 2026 at 2:00 AM
📰 Microsoft Hentikan Update Keamanan Exchange 2016 dan 2019 pada Oktober

👉 Baca artikel lengkap di sini: https://ahmandonk.com/2026/07/23/microsoft-exchange-2016-2019-esu-berakhir-oktober/

#cyb
er#cybersecurity##esua#exchangeServera#keamananSibero#microsofto#microsoftExchanger#securityUpdate
July 23, 2026 at 7:53 AM
winbuzzer.com/2026/07/20/m...

Microsoft has delayed Exchange Online PowerShell's credential cutoff to December, while scripts using stored passwords could break after module updates.

#ExchangeOnline #PowerShell #Microsoft #Authentication #MultiFactorAuthentication #Microsoft365 #MicrosoftExchange
Microsoft Delays Exchange Online PowerShell Credential Cutoff
Microsoft has delayed Exchange Online PowerShell's credential cutoff to December 2026, while scripts using stored passwords could break after module updates.
winbuzzer.com
July 20, 2026 at 12:51 PM
📰 Microsoft Akan Hentikan Dukungan OWA Light di Exchange Server

👉 Baca artikel lengkap di sini: https://ahmandonk.com/2026/07/10/microsoft-retire-owa-light-exchange-server/

#ema
il#emaila#exchangea#exchangeServero#microsofto#microsoftExchangeo#outlookOnTheWebo#outlookWebAccessi#owaLighte#server href="/hashtag/te" class="hover:underline text-blue-600 dark:text-sky-400 no-card-link">#te
July 10, 2026 at 3:43 AM
JPCERT/CCが公表したMicrosoftの2026年6月セキュリティ情報を解剖。Exchange Serverのなりすましバグへの実務対応をシビアに検証。

#Microsoft #JPCERT
https://yomuteku.blogspot.com/2026/07/microsoftexchange-server.html
Microsoftセキュリティ更新とExchange Serverのなりすまし脆弱性への早期パッチ対策
yomuteku.blogspot.com
July 3, 2026 at 7:48 PM