• mehdi@mkvlab.at

Exchange Server 2019 and 2016 Hotfix Update

Microsoft released a hotfix for Exchange Server 2016 and 2019 which includes some fixes but most importantly includes a very important feature, Hybrid Modern Authentication support for OWA and ECP in Exchange Server 2019 CU14. in this link, you find the Microsoft original KB regarding the hotfix and some useful information. Exchange 2019 CU14 HU2 15.02.1544.011 Download Exchange 2019 CU13 HU6 15.02.1258.034 […]

Exchange Server Security Updates – November 2023

Microsoft released several SUs for Microsoft Exchange Server 2016, 2019 addressing found vulnerabilities in these products. Microsoft encourages customers to apply SU due to the critical nature of these vulnerabilities. Exchange Online customers are already protected from the vulnerabilities addressed by these SUs and do not need to take any action. Microsoft has released Security Updates for vulnerabilities found in: […]

Windows 365

Windows 365 combines the power and security of the cloud with the versatility and simplicity of the PC. Resources: https://www.microsoft.com/en-us/windows-365

PrintNightmare – Print Spooler Remote Code Execution Vulnerability

All Windows systems are vulnerable!!! Microsoft (01.07.2021) has published the information related to  remote code execution vulnerability that affects Windows Print Spooler and has assigned CVE-2021-34527 to this vulnerability -nicknamed PrintNightmare-. A remote code execution vulnerability exists when the Windows Print Spooler service is improperly performs privileged file operations. An attacker who successfully exploited this vulnerability could run arbitrary code […]

Security Update Exchange Server 2013-2019 | Pwn2Own Vulnerability

Microsoft has released critical security update -April 2021- for on-premises Exchange Servers 2013, 2016 and 2019 to fix the following Remote Code Execution vulnerabilities: CVE-2021-28480 | Microsoft Exchange Server Remote Code Execution Vulnerability CVE-2021-28481 | Microsoft Exchange Server Remote Code Execution Vulnerability CVE-2021-28482 | Microsoft Exchange Server Remote Code Execution Vulnerability CVE-2021-28483 | Microsoft Exchange Server Remote Code Execution Vulnerability […]

PowerShell Command-Line

Active Directory Export All AD Users to CSV: Get AD User Properties: Get all GPOs and their creation time: Hyper-V Get Snapshot on VM: Delete VM Snapshot: Office 365 Connect to Tenant: Get Calendar Permission:

Exchange Servers 0-day exploits -HAFNIUM-

On March 2, 2021 Microsoft has released several security update for Microsoft Exchange Server to address the vulnerabilities that has beed exposed targeting on-premises version of Exchange server. Microsoft has categorised this as a critical vulnerabilities and recommended the update the Exchange Server as soon as possible. The Exchange versions affected are:  NOTE: Exchange Online is not affected. also Microsoft Exchange Server 2010 […]