Aviatrix Threat Research Center[verified]@aviatrixtrcActive Exploitation
The text reports that the NightEagle APT actively exploited CVE-2020-0688 in Exchange servers as part of a broader campaign involving C2 communication, DCSync attacks, and lateral movement. Although no specific exploit tool is named, the focus is on real-world usage of the CVE, supported by a link to detailed threat research.
truemorgan[verified]@_truemorganGeneral
The content consists solely of a list of Windows CVE identifiers without any additional detail.
SecureChap[verified]@SecureChapActive Exploitation
The text details active, ongoing exploitation campaigns by three named threat actors (NightEagle, Hacking Cat, Toy Ghouls) targeting Exchange servers via CVE-2020-0688, CVE-2019-0708, and CVE-2021-26855, with specific named malware, technical attack chains, and persistence mechanisms.
CTI Traffic@CTITrafficActive Exploitation
The post claims that the PLA 8th Technical Reconnaissance Bureau accessed target systems via Microsoft Exchange CVE‑2020‑0688, demonstrating real‑world exploitation of the vulnerability.
David@davidsheyiGeneral
The tweet recommends regular configuration updates and alludes to CVE-2020-0688 as an example of exploitation risk, but provides no technical details or evidence of active exploitation.