<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Microsoft Exchange zero-day 2022 in Advanced Threat Prevention Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/microsoft-exchange-zero-day-2022/m-p/516437#M1751</link>
    <description>&lt;P&gt;Currently, Palo Alto Networks is researching on the vulnerability. There's no signature available yet.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;For your reference: "A vulnerability/CVE is released; when will the vulnerability signature[IPS] be released? Why do some CVEs not have vulnerability signatures? What is default action?"&lt;BR /&gt;&lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000HAOnCAO" target="_blank"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000HAOnCAO&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;When there's an update, I can share the status here.&lt;/P&gt;</description>
    <pubDate>Fri, 30 Sep 2022 05:29:53 GMT</pubDate>
    <dc:creator>ymiyashita</dc:creator>
    <dc:date>2022-09-30T05:29:53Z</dc:date>
    <item>
      <title>Microsoft Exchange zero-day 2022</title>
      <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/microsoft-exchange-zero-day-2022/m-p/516423#M1750</link>
      <description>&lt;P&gt;According to below link Microsoft Exchange have expose to new vulnerability again . I am using Palo Alto firewall PAN-OS 9.1.14 may I know Palo Alto firewall is able to detect this vulnerability ? and where to check it since I do not have CVE number.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.bleepingcomputer.com/news/security/new-microsoft-exchange-zero-day-actively-exploited-in-attacks/" target="_blank"&gt;New Microsoft Exchange zero-day actively exploited in attacks (bleepingcomputer.com)&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.gteltsc.vn/blog/warning-new-attack-campaign-utilized-a-new-0day-rce-vulnerability-on-microsoft-exchange-server-12715.html" target="_blank"&gt;Warning: New attack campaign utilized a new 0-day RCE vulnerability on Microsoft Exchange Server | Blog | GTSC - Cung cấp các dịch vụ bảo mật toàn diện (gteltsc.vn)&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 30 Sep 2022 03:09:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/microsoft-exchange-zero-day-2022/m-p/516423#M1750</guid>
      <dc:creator>JiaXiang</dc:creator>
      <dc:date>2022-09-30T03:09:21Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft Exchange zero-day 2022</title>
      <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/microsoft-exchange-zero-day-2022/m-p/516437#M1751</link>
      <description>&lt;P&gt;Currently, Palo Alto Networks is researching on the vulnerability. There's no signature available yet.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;For your reference: "A vulnerability/CVE is released; when will the vulnerability signature[IPS] be released? Why do some CVEs not have vulnerability signatures? What is default action?"&lt;BR /&gt;&lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000HAOnCAO" target="_blank"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000HAOnCAO&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;When there's an update, I can share the status here.&lt;/P&gt;</description>
      <pubDate>Fri, 30 Sep 2022 05:29:53 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/microsoft-exchange-zero-day-2022/m-p/516437#M1751</guid>
      <dc:creator>ymiyashita</dc:creator>
      <dc:date>2022-09-30T05:29:53Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft Exchange zero-day 2022</title>
      <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/microsoft-exchange-zero-day-2022/m-p/516503#M1753</link>
      <description>&lt;P&gt;I check the portal site; however, nothing is public as of yet. Any update on the signature release?&lt;/P&gt;</description>
      <pubDate>Fri, 30 Sep 2022 20:54:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/microsoft-exchange-zero-day-2022/m-p/516503#M1753</guid>
      <dc:creator>Mikeya.Herbert</dc:creator>
      <dc:date>2022-09-30T20:54:08Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft Exchange zero-day 2022</title>
      <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/microsoft-exchange-zero-day-2022/m-p/516575#M1755</link>
      <description>&lt;P&gt;Here is the KB article for the vulnerabilities (CVE-2022-41040 and CVE-2022-41082). When there's an update on the signature coverage, the KB will also be updated.&lt;BR /&gt;&lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000sZK9CAM" target="_blank"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000sZK9CAM&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 03 Oct 2022 00:19:06 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/microsoft-exchange-zero-day-2022/m-p/516575#M1755</guid>
      <dc:creator>ymiyashita</dc:creator>
      <dc:date>2022-10-03T00:19:06Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft Exchange zero-day 2022</title>
      <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/microsoft-exchange-zero-day-2022/m-p/516824#M1756</link>
      <description>&lt;P&gt;A signature (TID:91368) for CVE-2022-41040 was released in the content version 8624.&lt;BR /&gt;Based on our research, blocking CVE-2022-41040 can be the mitigation of CVE-2022-41082.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Unit42 also published a blog:&lt;BR /&gt;&lt;A href="https://unit42.paloaltonetworks.com/proxynotshell-cve-2022-41040-cve-2022-41082/" target="_blank"&gt;https://unit42.paloaltonetworks.com/proxynotshell-cve-2022-41040-cve-2022-41082/&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 05 Oct 2022 02:08:59 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/microsoft-exchange-zero-day-2022/m-p/516824#M1756</guid>
      <dc:creator>ymiyashita</dc:creator>
      <dc:date>2022-10-05T02:08:59Z</dc:date>
    </item>
  </channel>
</rss>

