/?pid=critics-fume-after-github-removes-exploit-code-for-exchange-22392

Updated:06:35 PM EDT May 11


this is ggmania.com subsite Critics fume after Github removes exploit code for Exchange - TechAmok

Critics fume after Github removes exploit code for Exchange - [security]
06:16 PM EST - Mar,11 2021 - post a comment

Github has ignited a firestorm after the Microsoft-owned code-sharing repository removed a proof-of-concept exploit for critical vulnerabilities in Microsoft Exchange that have led to as many as 100,000 server infections in recent weeks. ProxyLogon is the name that researchers have given both to the four Exchange vulnerabilities under attack in the wild and the code that exploits them. Researchers say that Hafnium, a state-sponsored hacking group based in China, started exploiting ProxyLogon in January, and within a few weeks, five other APTs-short for advanced persistent threat groups-followed suit. To date, no fewer than 10 APTs have used ProxyLogon to target servers around the world.

Microsoft issued emergency patches last week, but as of Tuesday, an estimated 125,000 Exchange servers had yet to install it, security firm Palo Alto Networks said. The FBI and the Cybersecurity and Infrastructure Security Agency have warned that ProxyLogon poses a serious threat to businesses, nonprofits, and government agencies that remain vulnerable. On Wednesday, a researcher published what's believed to be the first largely working proof-of-concept (PoC) exploit for the vulnerabilities. Based in Vietnam, the researcher also published a post on Medium describing how the exploit works. With a few tweaks, hackers would have most of what they needed to launch their own in-the-wild RCEs, security speak for remote code execution exploits. Publishing PoC exploits for patched vulnerabilities is a standard practice among security researchers. It helps them understand how the attacks work so that they can build better defenses. The open source Metasploit hacking framework provides all the tools needed to exploit tens of thousands of patched exploits and is used by black hats and white hats alike. Within hours of the PoC going live, however, Github removed it. By Thursday, some researchers were fuming about the takedown. Critics accused Microsoft of censoring content of vital interest to the security community because it harmed Microsoft interests. Some critics pledged to remove large bodies of their work on Github in response.

Short overview of recent news articles

The Old Guard 2 - Official Trailer (2025) Charlize Theron, KiKi (May,11 2025 )

I think I know why Ryzen 9000 Series CPUs are Dying...(!) (May,11 2025 )

Is Windows Defender good enough in 2025? (May,10 2025 )

AMD Adrenalin 25.5.1 Driver Released for Doom: The Dark Ages (May,09 2025 )

Ripple SEC Grip OVER, XRP Freedom of USE, Market MODE BULL RUN (May,09 2025 )

"Is x86 Actually Screwed?" ft. Wendell of Level1 Techs - (May,08 2025 )

Android's New Design Guidelines Leaked (May,07 2025 )

Grand Theft Auto VI trailer #2 (May,06 2025 )

Microsoft's Dirty Secret: Your Old PC is Now Trash! (May,05 2025 )

No Noise Cancelling? GOOD. Unboxing the nwm One Headphones & First (May,04 2025 )

NEW! 2025 Audi S5 (367hp) | 0-258 km/h acceleration (May,04 2025 )

Bugatti Bolide vs Nurburgring. 1825 HorsePower Insanity (May,02 2025 )

This will be the largest tech Yard Sale EVER! Insanely low prices on (May,01 2025 )

Skoda Kodiaq RS 245 // 0-100 100-200 TOP SPEED POV & SOUND (May,01 2025 )

Disable or Uninstall Windows Recall to Protect Your Data Privacy (May,01 2025 )

A new Alternative to Nextcloud? OpenCloud presented and local (May,01 2025 )

NVIDIA GeForce Hotfix Driver 576.26 Available (Apr,29 2025 )

2025 Porsche 911 992.2 GTS T HYBRID | SOUND 0-100 100-200 200-300 & (Apr,28 2025 )

We Made Perfect Thermal Paste in a Factory, ft. Der8auer | Made In (Apr,28 2025 )

Cyber Security Company CEO Arrested for Installing Malware on (Apr,28 2025 )

This Kid Made his Own Laptop and it's AMAZING! (Apr,27 2025 )

How is this SO CHEAP? - Ubiquiti Cloud Gateway Fiber (Apr,26 2025 )

Ripple president on stablecoins, Trump and tokenization (Apr,26 2025 )

T-Mobile Launches 5G Advanced (Apr,26 2025 )

540HP BMW E46 M3 5.0 V10 // 300KMH REVIEW on AUTOBAHN (Apr,25 2025 )

Has Nvidia Given Up? (Apr,25 2025 )

AMD Software Adrenalin 25.4.1 Beta Drivers Released (Apr,23 2025 )

Stop Paying for Cloud Storage: How I Built My Own Photo Backup (Apr,23 2025 )

Wednesday: Season 2 - Official Teaser Trailer (Apr,23 2025 )

Everything You Need To Know About Windows 10 LTSC (Apr,23 2025 )

Do NOT use Distilled Water for your Water Cooling Loop! (Apr,22 2025 )

Intel Improves 285K Performance with a Big Update (Apr,22 2025 )

FERRARI 812 GTS // REVIEW on AUTOBAHN (Apr,20 2025 )

Meta Disables Apple Intelligence in Facebook and Other Apps (Apr,19 2025 )

Change these Windows Settings for a smarter PC (Apr,19 2025 )

How a malware pdf hacked 4chan (Apr,19 2025 )

2025 BMW 3 Series G20 330e LCI II // TOP SPEED REVIEW on AUTOBAHN (Apr,18 2025 )

Samsung Just Released a Powerful Update - Millions of Phones Getting (Apr,17 2025 )

NVIDIA GeForce Game Ready 576.02 WHQL Drivers (Apr,17 2025 )

I Can't Review GPUs that Don't Exist... RTX 5060 and 5060 Ti (Apr,16 2025 )

This Desktop Motherboard Has a 16-Core Laptop CPU Built-In (Apr,15 2025 )

Hidden Windows Features You Should Be Using in 2025! (Apr,14 2025 )

Leo Says Ep. 80: Ryzen AI Max Looked Great at CES...So Why Did I Buy (Apr,14 2025 )

Microsoft finally removes a six-month old Windows 11 24H2 update (Apr,13 2025 )

Coil Whine Phenomenon on Water-Cooled RTX 5090 Frostbite (Apr,13 2025 )

Why I NEVER Sign In to Windows with a Microsoft Account! (Apr,13 2025 )

How good is Windows Defender in 2025? (Apr,12 2025 )

Big Change Coming To Windows 11 Start Menu (Apr,11 2025 )

Zorin OS: The Linux That Feels Like Windows (But Better!) (Apr,10 2025 )

Massive New 3GB Update for Millions of Samsung Phones! (One UI 7.0, (Apr,10 2025 )

>> News Archive <<

TechAmok - Privacy Policy        loading time:0.03secs