/?pid=22392

Updated:01:29 PM EST Dec 21


this is ggmania.com subsite Critics fume after Github removes exploit code for Exchange - TechAmok

Critics fume after Github removes exploit code for Exchange - [security]
06:16 PM EST - Mar,11 2021 - post a comment

Github has ignited a firestorm after the Microsoft-owned code-sharing repository removed a proof-of-concept exploit for critical vulnerabilities in Microsoft Exchange that have led to as many as 100,000 server infections in recent weeks. ProxyLogon is the name that researchers have given both to the four Exchange vulnerabilities under attack in the wild and the code that exploits them. Researchers say that Hafnium, a state-sponsored hacking group based in China, started exploiting ProxyLogon in January, and within a few weeks, five other APTs-short for advanced persistent threat groups-followed suit. To date, no fewer than 10 APTs have used ProxyLogon to target servers around the world.

Microsoft issued emergency patches last week, but as of Tuesday, an estimated 125,000 Exchange servers had yet to install it, security firm Palo Alto Networks said. The FBI and the Cybersecurity and Infrastructure Security Agency have warned that ProxyLogon poses a serious threat to businesses, nonprofits, and government agencies that remain vulnerable. On Wednesday, a researcher published what's believed to be the first largely working proof-of-concept (PoC) exploit for the vulnerabilities. Based in Vietnam, the researcher also published a post on Medium describing how the exploit works. With a few tweaks, hackers would have most of what they needed to launch their own in-the-wild RCEs, security speak for remote code execution exploits. Publishing PoC exploits for patched vulnerabilities is a standard practice among security researchers. It helps them understand how the attacks work so that they can build better defenses. The open source Metasploit hacking framework provides all the tools needed to exploit tens of thousands of patched exploits and is used by black hats and white hats alike. Within hours of the PoC going live, however, Github removed it. By Thursday, some researchers were fuming about the takedown. Critics accused Microsoft of censoring content of vital interest to the security community because it harmed Microsoft interests. Some critics pledged to remove large bodies of their work on Github in response.


Add your comment (free registrationrequired)

Short overview of recent news articles

Dec,21 2025 He Built a Privacy Tool. Now He's Going to Prison (Kone Rodriguez,
Dec,20 2025 Insane Moves! B-Boy Shigekix vs. B-Boy Issin - Red Bull BC One World
Dec,20 2025 9800X3D & RTX 5070 Ti Gaming PC - MSI Project Zero Done Right
Dec,19 2025 The XG27AQWMG Sets a New Standard for 1440p OLED
Dec,19 2025 OnePlus 15R Boasts Huge 7,400 mAh Battery
Dec,19 2025 Motorola Refreshes moto g power for 2026
Dec,18 2025 NVIDIA GeForce 591.59 WHQL Driver
Dec,18 2025 Are We Quitting YouTube Due To DRAM Apocalypse?
Dec,16 2025 The Samsung TriFold is AWESOME!
Dec,16 2025 $30 vs $30,000 TV
Dec,16 2025 Stranger Things 5 - Volume 2 Trailer
Dec,14 2025 Google Brings Live Video Sharing to 911 Calls on Android
Dec,14 2025 Samsung One UI 8.5 Will Offer New Features
Dec,14 2025 Dell AW3225QF Review - 32-inch curved gaming monitor
Dec,13 2025 HW News - AMD Says AI Definitely, Absolutely Not A Bubble, New
Dec,13 2025 The BEST Smartphones of 2025!
Dec,11 2025 10 Atmospheric Games That Might CHANGE YOUR LIFE
Dec,11 2025 Samsung Galaxy S26 Ultra - Samsung Isn't Hiding It Anymore
Dec,10 2025 AMD Releases Adrenalin Edition 25.12.1 WHQL Drivers
Dec,10 2025 S25 Ultra VS 17 Pro Max
Dec,09 2025 All You Need Is Kill - Official Trailer
Dec,09 2025 Why can’t you be NORMAL?!? Roasting Staff Setups
Dec,09 2025 A Ryzen Cooling MONSTER - be quiet Silent Loop 3 Review
Dec,07 2025 The Boys - Official Final Season Trailer
Dec,06 2025 Unemployed in your 30's
Dec,05 2025 Play Store Customers to Receive Automatic Payments from $700 Million
Dec,05 2025 Google's Second Release of Android 16 Brings Smart Notifications
Dec,05 2025 Netflix To Buy Warner Bros for $82.7 Billion
Dec,03 2025 Micron to Exit Crucial Consumer Business, Ending Retail SSD and DRAM
Dec,02 2025 Samsung Galaxy Z TriFold Unboxing!
Nov,30 2025 Top 5 Best CPUs of 2025
Nov,30 2025 Google Adding AirDrop to Android
Nov,29 2025 20 TOP ALIEXPRESS products for BLACK FRIDAY
Nov,26 2025 Stop Wasting Money on Premium Monitors
Nov,23 2025 The Blackest Friday - Tech News Nov 23
Nov,23 2025 T-Roc: Will this new VW be the best car of 2026?
Nov,23 2025 Can I build my own Steam Machine?
Nov,22 2025 50 NEXT-LEVEL Gadgets Every Man NEEDS to See
Nov,22 2025 RETURN TO SILENT HILL Trailer (2026)
Nov,20 2025 I was WRONG about the Porsche 911 GT3 (or was I?)
>> News Archive <<

TechAmok - Privacy Policy        loading time:0.01secs