What is the main advantage of the remote Exchange PowerShell access technique described in the article?

The technique allows executing Exchange PowerShell commands without requiring a domain-joined host or FQDN, expanding attack surface beyond conventional methods. It leverages [NTLM authentication](/news/penetration-technique-remote-access-to-exchange-powershell) and bypasses restrictions fixed in CVE-2022–41040. This approach is particularly useful for post-ProxyShell scenarios where SSRF is patched but NTLM-enabled remote PowerShell remains accessible.