A Russian threat actor also known as CL-STA-1114, TA488, UNK_PitStop, and Void Blizzard, responsible for exploiting vulnerabilities in Zimbra and Microsoft OWA to deploy half-click exploit chains for intelligence collection against government and defense sectors.