New Service Launched in Response to Hafnium Attacks
ID: 6628fb4f-3799-558a-93c9-83d864d92b22
STIX ID: report--6628fb4f-3799-558a-93c9-83d864d92b22
Feed Name: TrustedSec blog
Threat Score
TrustedSec reports widespread exploitation of Microsoft Exchange servers by the Hafnium actor, with many servers compromised before patches were available and backdoors uploaded that could be used post-patch. They offer a Microsoft Exchange Incident Response Emergency Analysis service to extract forensic data, identify compromises, backdoors, and post-compromise activity, and deliver findings within one business day to help organizations contain and mitigate the threat.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
