Potential OWASSRF Exploitation Attempt - Proxy — Detection Rule

Detects exploitation attempt of the OWASSRF variant targeting exchange servers It uses the OWA endpoint to access the powershell backend endpoint

Read the full analysis on IntelFusions