logo

New Service Launched in Response to Hafnium Attacks

ID: 6628fb4f-3799-558a-93c9-83d864d92b22

STIX ID: report--6628fb4f-3799-558a-93c9-83d864d92b22

Feed Name: TrustedSec blog

Threat Score
90/100

Date Published: 2025-03-19

Date Updated: 2026-05-01

...
...

TrustedSec reports widespread exploitation of Microsoft Exchange servers by the Hafnium actor, with many servers compromised before patches were available and backdoors uploaded that could be used post-patch. They offer a Microsoft Exchange Incident Response Emergency Analysis service to extract forensic data, identify compromises, backdoors, and post-compromise activity, and deliver findings within one business day to help organizations contain and mitigate the threat.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.