COLLABORATION PRO
  • Home
  • Exchange 2019
  • Exchange 2016
  • Exchange 2013
  • Exchange 2010
  • Exchange Online
  • Azure
  • Other Articles
  • Windows
  • Contact
  • About
Select Page
Exchange 2019:- Brute forcing OWA to gain access to user accounts

Exchange 2019:- Brute forcing OWA to gain access to user accounts

by edward | Nov 22, 2023 | Exchange 2016, Active Directory, BurpSuite, Exchange 2013, Exchange 2019, Kali Linux

We all know that end users hate complex passwords and having to change passwords often leads them to use the same password but add a number or character at the end of it. Password complexity is just one of the problems. The next problem is information disclosure such...
Exchange 2019:- Brute forcing OWA to gain access to user accounts

Information disclosure with NTLM Authentication in Exchange Server

by edward | Nov 21, 2023 | Exchange 2016, Exchange 2019, NMAP, NMAP Scripting Engine, NSE

Performing some tests against my lab Exchange servers, I noticed that Shodan.io revealed information. Take note that attackers also use Shodan.io when enumerating targets. After digging further with NMAP and some scripts, it became more apparent that internal...
Exchange 2016:- Move request failures are not always due to space/back pressure but sometimes misconfigurations

Exchange 2016:- Move request failures are not always due to space/back pressure but sometimes misconfigurations

by edward | Nov 15, 2023 | Exchange 2016

As an IT Admin, mailbox migrations are a constant thing. Moving users to new databases because you have a new database or you trying clean up and old one with few users, or simply moving to Microsoft 365, there are times when things error out. Errors are not always...
Exchange 2019:- Brute forcing OWA to gain access to user accounts

Exchange 2019:- Rollback CVE-2023-21709 PowerShell script workaround

by edward | Nov 12, 2023 | Exchange 2016, Exchange 2019

In the August 2023 Security update (SU) for Exchange Server 2016 and Exchange Server 2019, there was a work around that had to be put in place to remove the Token Cache Module in IIS to mitigate a vulnerability. Microsoft provided the script and you could apply it to...
Exchange 2016:- Move request failures are not always due to space/back pressure but sometimes misconfigurations

Exchange 2016:- Event ID 4002 after performing migrations to Office 365 and invalid certificate

by edward | Nov 10, 2023 | Exchange 2016

Sometimes the event logs on Exchange servers throw up errors or warnings that do not appear again. The event ID, 4002 for MSExchange Availability is a broad error/warning/informational alert. Looking a the error below, a Proxy request failed with an HTTP status code...
« Older Entries
Next Entries »
Copyright © 2024 COLLABORATION PRO