ThreatCluster

CISA and NSA Release Guidance on Microsoft Exchange Server Security

First seen 23 Nov 2025, 03:35 UTC PetriTechrepublicInfosecurity-Magazine 16

Article Content

Browse articles
ThreatCluster

CISA and NSA have issued new guidance to enhance security for Microsoft Exchange Servers following a surge in attacks exploiting vulnerabilities, particularly CVE-2025-53786. This advisory is part of a broader effort involving multiple countries to protect organizations still using outdated or misconfigured Exchange Server versions, especially after Microsoft ended support for certain versions on October 14, 2025.