Potential CVE-2021-26857 Exploitation Attempt — Detection Rule

Detects possible successful exploitation for vulnerability described in CVE-2021-26857 by looking for | abnormal subprocesses spawning by Exchange Server's Unified Messaging service

Read the full analysis on IntelFusions