Researchers have identified stealthy new malware that threat actors have been using for the past 15 months to backdoor Microsoft Exchange servers after they have been hacked. Dubbed SessionManager, the malicious software poses as a legitimate module for Internet Information Services IIS, the web server installed by default on Exchange servers. Organizations often deploy IIS modules to streamline...
Microsoft Exchange servers worldwide hit by stealthy new backdoor
Found 41 days ago at Arstechnica