Microsoft has shared mitigations for two new Microsoft Exchange zero-day vulnerabilities tracked as CVE-2022-41040 and CVE-2022-41082, but researchers warn that the mitigation for on-premise servers is far from enough.
Microsoft has shared guidance to help admins defend their Windows enterprise environments against KrbRelayUp attacks that enableĀ attackers to gain SYSTEM privileges on Windows systems with default configurations.