Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes

A Russian state-supported espionage group spent months reading Western mailboxes through a then-unknown flaw in Zimbra’s webmail client.

The payload goes after the last 90 days of email, the organization’s entire email directory, the password saved in the browser and the codes kept for two-factor recovery. Opening the message was enough to start it.

The NSA, CISA and partner agencies published

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

New Avalon Malware Framework Packs CrownX Ransomware Capabilities

New Avalon Malware Framework Packs CrownX Ransomware Capabilities Cybersecurity researchers have discovered a previously undocumented modular malware framework codenamed Avalon that’s distributed by means of a multi-stage phishing chain capable

We don’t use AI in any of our design or production processes

We don’t use AI in any of our design or production processes Source: Hacker News

EU fines Google €890M for competition breaches over search and apps

EU fines Google €890M for competition breaches over search and apps Source: Hacker News