Hallo,

MDaemon publish Patch untuk mengatasi EasyBee Exploit.

http://www.altn.com/Support/#EasyBeeExploitNotice

April 19, 2017 - The recent release of hacking tools by the Shadow Group
contains a number of files which can be used to exploit many different
software products. Included in this list was the file, EasyBee, which
could be used to potentially exploit MDaemon.


Alt-N has reviewed the MDaemon software and found the following:

Older, non-supported versions (v. 9.x – 11.x) are vulnerable to attack

Versions 12.x and 13.0 are not vulnerable to the EasyBee executable, but
may be vulnerable to the exploit used by EasyBee

Versions 13.5 and newer are not vulnerable


If you are using MDaemon v 9.x – v 13.0, Alt-N recommends customers take
the following action:

Upgrade all older, non-supported versions of MDaemon to the newest, most
secure version 17

http://www.altn.com/Downloads/MDaemon-Mail-Server-Free-Trial/

If you do not upgrade versions 12.x-13.0, customers can download the
exploit fix below

MD 13.0.8
http://files.altn.com/mdaemon/release/WebAdmin13.0-bug18663.zip

MD 12.0.6
http://files.altn.com/mdaemon/release/WebAdmin12.5-bug18663.zip

MD 12.5.9
http://files.altn.com/mdaemon/release/WebAdmin12.0-bug18663.zip

Note:The new DLLs only work with the latest versions of MDaemon 12.0,
12.5, and 13.0. If a customer is running MDaemon 12.0.1 they must first
upgrade to 12.0.6 before using the new dll. 12.5 must be upgraded to
12.5.9 and 13.0 must be upgraded to 13.0.8

You can learn more about the Shadow Brokers release by reading this article.

https://www.bleepingcomputer.com/news/security/shadow-brokers-release-new-files-revealing-windows-exploits-swift-attacks/




-- 
syafril
-------
Syafril Hermansyah
MDaemon-L Moderators, MDaemon 17.0.1-64 Beta A, SP 5.1.0-64
Harap tidak cc: atau kirim ke private mail untuk masalah MDaemon.

Mengeritik jauh lebih mudah daripada berbuat yang benar
        -- Benyamin Disraeli

Attachment: signature.asc
Description: OpenPGP digital signature

Kirim email ke