Security · 18h ago
Kremlin hackers exploit max-severity Exchange flaw for persistent backdoors
Russian state hackers are actively exploiting a maximum-severity Microsoft Exchange Server vulnerability to backdoor unpatched networks. The exploits grant persistent server access that survives credential rotation and disk re-imaging. Organizations must patch immediately to prevent compromise.
Meridian48 take
This is a critical, actively exploited flaw, but the real story is the persistence mechanism that outlasts standard remediation—underscoring the need for deep incident response, not just patching.
Read the full reporting
Max-severity Exchange server flaw under active exploitation by Kremlin hackers →
Ars Technica
exchange-serverkremlin-hackers