The LoughTec Security Operations Centre was successful recently in thwarting an attempted cyber attack on a major UK-based Agricultural Organisation.
The company fell victim to a ProxyShell exploit on their email server.
ProxyShell is the name of an attack that uses three chained email server vulnerabilities to perform unauthenticated, remote code execution.
The client was in the middle of a migration to a cloud email server, so it was important to contain the processes and prevent the exploit from continuing to function.