Hafnium Zero-day Exploit: Threat Advisory Report
ID: d0c6f939-2a6b-52cf-8d77-f3def86f44ba
STIX ID: report--d0c6f939-2a6b-52cf-8d77-f3def86f44ba
Feed Name: ReliaQuest Blog
Threat Score
## Executive Summary In March 2021 Microsoft disclosed multiple critical zero-day vulnerabilities affecting on-premises Exchange Server that were actively exploited by a state-sponsored group dubbed HAFNIUM; the exploited issues (SSRF, deserialization, arbitrary file write) carried CVSS base scores of 7.8 or higher. ReliaQuest is tracking and ingesting IoCs into its GreyMatter platform, building detections and retroactive hunts to protect customers.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
