No BS Just Facts logo
No BS Just Facts
It might be boring, but it's just the facts.

← All stories · technology

Ars Technica

Max-severity Exchange server flaw under active exploitation by Kremlin hackers

Thursday, July 30, 2026


Microsoft's Exchange server vulnerability is being actively exploited by Russian state-sponsored hackers, according to cybersecurity researchers. The flaw allows attackers to gain persistent access to servers even after administrators reset credentials or reimage disks. Microsoft released a patch for the vulnerability on January 9, 2026. Security researchers identified the exploitation campaign targeting organizations in the United States and Europe.

Original reporting: https://arstechnica.com/security/2026/07/kremlin-hackers-are-exploiting-exchange-flaw-to-backdoor-unpatched-networks/

Next story

US Olympian Lolo Jones accuses USOPC, USA Bobsled for 'nearly paralyzing' her over mistreated injuries