A new Microsoft Exchange flaw is being used to attack servers

A new Microsoft Exchange flaw is being used to attack servers and deliver remote access tools and remote administration software, researchers have revealed.

Cybersecurity experts from CrowdStrike stumbled upon a new exploit chain while investigating a Play ransomware attack. After further analysis, it was concluded that the exploit chain bypasses mitigations for the ProxyNotShell URL rewrite flaw, allowing threat actors remote code execution (RCE) privileges on target endpoints (opens in new tab).

Source