Hello and today we will solve the alert SOC175 - PowerShell Found in Requested URL - Possible CVE-2022-41082 Exploitation. This exploit targets Exchange Servers and was a zero-day RCE vulnerability that is just recently discovered. In fact there were still no available patches from MS as of this writing (Oct 13, 2022).
#letsdefendio #blueteam #soc #incidentresponse #cve-2022-41082 #proxynotshell