SECURITYTHE HACKER NEWS
Russian Hackers Exploit Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation
Russian threat actors are exploiting a vulnerability in Microsoft Outlook Web Access (OWA) to maintain mailbox access after credential rotation, targeting U.S. and European government entities and sectors like telecommunications, financial, hospitality, and aerospace. This follows their prior exploitation of a Zimbra vulnerability.
Mentioned
Related Signal
Adjacent reporting
- Russian hackers exploit Exchange OWA zero-day for long-term mailbox access
- Microsoft's patch for a 0-day exploited by Russian spies fell short. Another Windows flaw is under attack
- Russia Hacked Routers to Steal Microsoft Office Tokens
- Exploited Exchange Server flaw turns OWA inboxes into script launchpads