April 27, 2025
Trending News

20,000 Microsoft Exchange servers are terribly outdated and vulnerable to attack

  • December 4, 2023
  • 0

Tens of thousands of Microsoft Exchange servers are hopelessly outdated and therefore vulnerable to hackers. The majority of the facilities are located in Europe. Tens of thousands of

20,000 Microsoft Exchange servers are terribly outdated and vulnerable to attack

Update Microsoft Exchange

Tens of thousands of Microsoft Exchange servers are hopelessly outdated and therefore vulnerable to hackers. The majority of the facilities are located in Europe.

Tens of thousands of publicly accessible email servers are running old versions of Microsoft Exchange that are no longer supported. Most systems are therefore vulnerable to attacks. More than half of legacy Exchange instances run in Europe. The numbers come from the Shadowserver Foundation, a nonprofit organization that aims to make the Internet as safe as possible.

Many European servers

In total, the organization sees 19,706 vulnerable servers worldwide. There are 10,047 dated Exchange mail servers in Europe. The US comes in second with 6,001 servers, which is significantly less. This shows that European organizations are significantly worse at implementing updates. A more fragmented corporate landscape with a greater focus on SMEs could play a role in this.

The majority of the outdated systems run on Exchange Server 2013. Microsoft ended support for this in April of this year, meaning that users no longer receive security updates. Older versions of the mail server are also still in circulation.

Additionally, not all legacy installations run the latest available version of Exchange software. Systems are very vulnerable to Proxylogon, among other things. In practice, it is very dangerous not to update Microsoft Exchange servers even though they are accessible via the Internet.

Popular back gate

On-premises Exchange has proven time and time again to be a popular vector for criminals to break into corporate infrastructure via email. A cracked mail server is a perfect springboard for more complex attacks in which attackers can gain control of the entire IT infrastructure – with all the consequences that entails.

So update is the message. Companies that now find that they are still using an old version and cannot update immediately need to ask themselves whether they have the necessary IT knowledge internally to secure their email systems. If that’s not the case, you may be wondering if a local version of your email traffic is the best option. A Microsoft-managed migration to Exchange Online can solve many security issues in such a case.

Source: IT Daily

Leave a Reply

Your email address will not be published. Required fields are marked *