Kremlin-linked hackers are actively exploiting a max-severity flaw in Exchange Server, according to the source report. The activity puts unpatched networks at risk of being backdoored through vulnerable server infrastructure.
The most serious concern is persistence. The reported exploits can give attackers ongoing server access that remains in place even after defenders rotate credentials or re-image disks, two common steps used to recover from compromise.
Organizations running affected Exchange servers should treat the issue as an urgent security threat and prioritize remediation, investigation, and validation that compromised systems have been fully cleaned.