⚠️ Severity: Low

Mitigating NTLM Relay Attacks by Default

Introduction In February 2024, we released an update to Exchange Server which contained a security improvement referenced by CVE-2024-21410 that enabled Extended Protection for Authentication (EPA) by default for new and existing installs of Exchange 2019. While we’re currently unaware of any active threat campaigns involving NTLM relaying attacks against Exchange, we have observed threat actors exploiting this vector in the past.

📌 Informații despre sursă

Sursă: Microsoft Security
Importat la: 12 October 2025, 10:01
Publicat: 9 December 2024

⚠️ Această știre a fost importată automat din surse oficiale. Pentru informații actualizate, vă rugăm să consultați direct site-ul sursei.

top
en_USEnglish
Simplifying IT
for a complex world.
Platform partnerships