In-house Microsoft Exchange zero-day attack mitigation is not enough

It appears the mitigation that Microsoft has published for the vulnerabilities CVE-2022-41040 and CVE-2022-41082 is not enough:

Microsoft Exchange server zero-day mitigation can be bypassed (bleepingcomputer.com)

These vulnerabilities are being actively exploited and now the steps put in place to defend against the issue can be bypassed and others are offering different solutions whilst a patch is waited on from Microsoft.

Clive Catton MSc (Cyber Security) – by-line and other articles