BitSight Security Ratings Blog - Cybersecurity News & Tips

BitSight Observations Into the HAFNIUM Attacks: Part One

Written by Luis Grangeia & Paulo Pacheco | March 9, 2021

On March 2, Microsoft announced that it has detected multiple zero-day exploits being used to attack on-premises versions of Microsoft Exchange Server. According to Microsoft, in the attacks observed, cybersecurity threat actors used this vulnerability to access on-premises Exchange servers, which enabled access to email accounts, and installed additional malware to facilitate long-term access to victim environments.