top of page

Important Information on the Recent Microsoft Exchange Server Vulnerabilities

Writer's picture: AIMAIM

Updated: Mar 17, 2021


Over 30,000 organizations have been affected by the recent Microsoft Exchange Server vulnerability announced in early March.


Experts have learned that, after accessing the victim’s environment, criminals leave behind a web shell or back door, a hacking tool that can be used by the criminal to subsequently access the same environment. Critically, the criminal’s web shell remains even after the Exchange Server is patched with the latest Microsoft updates. Therefore, all Exchange servers should be inspected for signs of unauthorized access and any web shells must be removed.


Make sure your system administrator has done the following:


STEP ONE: Patch first!

All Exchange servers should be patched immediately to address the four identified vulnerabilities.


STEP TWO: Investigate whether your server has been compromised

Review Microsoft’s advice and download the Microsoft Safety Scanner (a Microsoft-developed scan tool) onto the email server, launch the program, agree to the license agreements, and click the “Full scan” option. This tool will automatically delete any detected files and not quarantine them. Once the scan is complete, the tool will report the deleted files. When done using the scanner, uninstall the tool simply by deleting the msert.exe executable. Importantly, this tool is only used to spot scans and should NOT be relied upon as an antivirus program.

49 views0 comments

Comments


What Our Insureds Say

"We are very thankful that we were able to have our preferred counsel represent us in this matter."

“I just want to thank you and your staff for all your help and expertise with our claim. 

We are very thankful that we were able to have our preferred counsel represent us in this matter. Thank you so very, very much!”

© 2024 by Attorneys Insurance Mutual of the South, Inc.

Website design by Cartography.

Attorneys Insurance Mutual of the South, Inc., Risk Retention Group

200 Inverness Parkway
Birmingham, Alabama 35242

info@attorneysinsurancemutual.com

Tel: 205-980-0009

Toll-Free: 800-526-1246

Fax: 205-980-9009

Connect online:

  • Facebook
  • Instagram
  • White LinkedIn Icon
  • Twitter
fsr_a
bottom of page