Skip to main content

Joint advisory highlights Microsoft Exchange and Fortinet vulnerabilities

A joint advisory with international partners highlights an Iranian APT exploiting Microsoft Exchange and Fortinet vulnerabilities
Art Alex via Getty Images

An Iranian actor assessed as government sponsored is exploiting known CVEs against multiple sectors.

The advisory is issued by the Cybersecurity and Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI), the Australian Cyber Security Centre (ACSC) and the NCSC. It provides observed tactics and techniques and indicators of compromise.

It refers to activity against CNI organisations in the US, and Australian organisations. As the threat is ongoing, the NCSC advises that UK organisations review the mitigation and detection advice and take appropriate action if necessary. The NCSC advice remains to install security updates as soon as practicable.

Read the advisory in full on the CISA website

Published

News type

Alert