#Microsoft SQL Server
Attackers Abuse SQL Server as a Covert Command and Exfiltration Channel
Investigators found attackers using Microsoft SQL Server functionality to execute Windows commands and return stolen files through query output. An exposed staging server also leaked the intruders' toolkit...
Old Microsoft SQL Server RCE Returns in Active Attacks, Triggering CISA Forensic Mandate
CISA says attackers are exploiting CVE-2019-1068, a Microsoft SQL Server remote-code execution flaw, and has ordered both remediation and forensic triage. Database owners should patch exposed systems, review...