Microsoft Outlook Vulnerabilities: What You Need to Know.

1 min read
Source: CybersecurityNews
Microsoft Outlook Vulnerabilities: What You Need to Know.
Photo: CybersecurityNews
TL;DR

Hackers are exploiting a critical vulnerability in Microsoft Outlook, CVE-2023-23397, to steal NTLM hashes and gain affluent access to organizations through an escalation of privilege vulnerability. The vulnerability affects all versions of Microsoft Outlook on Windows, and threat actors have targeted and breached the networks of about 15 critical organizations related to government, military, energy, and transportation. Microsoft researchers have provided key mitigations, including installing the patch, using the Protected Users Security Group, and blocking port TCP/445 outbound from the network. Admins must apply and check all the recommended mitigations immediately to prevent any attack effectively.

Share this article

Want the full story? Read the original reporting

Read on CybersecurityNews