At Least 30,000 U.S. Organizations Newly Hacked Via Holes in Microsoft’s Email Software

I thought you wrote that comment to me and that Brian was a new “Karen” type moniker. LOL.

Thank you for linking/quoting that. He makes a really good point. A TON of orgs will be affected by this exploit because of that, and will require proactive technical staff (as non-technical staff may not understand the nuances in a hybrid config, or even that they’re in a hybrid environment).

Serious question though, aren’t things like this not a stronger incentive to move entirely to the cloud?

In the scenario he’s describing, Exchange Server is best practice if identities are managed on-prem and they want 2-way sync, and also mentions that companies use it for SMTP relay, but he’s not saying it’s best practice as in recommended over being fully in the cloud. Right?

/r/technology Thread Parent Link - krebsonsecurity.com