
Critical Exchange Flaw Under Kremlin Exploit: Patch Now
Security researchers report that a maximum-severity vulnerability in Microsoft Exchange Server is under active exploitation by threat actors linked to the Kremlin. Successful attacks can implant backdoors that remain even after password resets or full disk re-imaging, giving intruders long-term access to email and internal systems.
Why Melbourne and Australian organisations should act immediately
Many Australian professional services, legal, and mid-market firms in Melbourne still run on-premises Exchange for compliance or legacy integration reasons. A persistent backdoor on these servers can expose client confidences, board communications, and financial data—exactly the assets local regulators and clients expect to be protected. Delaying patches because “we are behind the firewall” is no longer defensible.
Practical next steps for Australian IT teams include: inventory every Exchange instance (including forgotten DR or lab boxes), apply the latest cumulative updates without waiting for a monthly cycle, enforce modern authentication and privileged-access workstations, and monitor for anomalous mailbox-export or transport-rule changes. Engaging a local security partner for rapid threat hunting can shorten the window of exposure while patches roll out across hybrid estates.
For boards and operations leaders in Victoria, this incident is another reminder that email remains a high-value target. Budgeting for continuous patch hygiene and zero-trust controls around messaging infrastructure is now a core resilience measure, not an optional IT project.







