Exchange / OWA
Version, NTLM auth realm
Internal Pentest - NTLM Reco
Proxy Logon
ProxyShell - CVE-2021-34473
CVE-2023-36745 - RCE
ProxyNotShell
Exploiting Exchange Powershell after ProxyNotShell
User enumeration
Metasploit owa_login
MailSniper
Msmailprobe
Password Spray
Bruteforce
CloudMicrosoft Exchange ActiveSync (EAS)
Resources
Interesting Books
Interesting BooksLast updated