hybrid exchange security

  1. CVE-2025-53786: Urgent Hybrid Exchange Risk and Entra ID Mitigation

    Security researcher Dirk‑jan Mollema’s discovery of two linked vulnerabilities in Microsoft’s Entra ID architecture exposed a failure mode that, by design, could have allowed an attacker with limited on‑premises access to gain near‑complete control over hybrid Microsoft environments — a chain...