Zimbra: Email and Collaboration Platform
Zimbra is an email and collaboration platform targeted by Laundry Bear using CVE-2025-66376 to deliver ZimReaper malware.
Zimbra is an email and collaboration platform targeted by Laundry Bear using CVE-2025-66376 to deliver ZimReaper malware.
The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of a new campaign involving a malicious program disguised as a Notepad++…
Laundry Bear (also known as CL-STA-1114, TA488, Void Blizzard) is a Russia-linked threat actor that has targeted Zimbra mail servers using a…
ZimReaper is a malicious JavaScript delivered via a half-click exploit (CVE-2025-66376) by the Laundry Bear threat actor. It harvests email communications and…
Zimbra Collaboration is an email and collaboration platform vulnerable to CVE-2025-66376. The flaw affects versions 10.0 before 10.0.18 and 10.1 before 10.1.13.…
A Russian state-sponsored espionage group exploited a zero-day vulnerability in Zimbra's webmail client to steal emails, passwords, and two-factor authentication recovery codes…
CVE-2025-66376 is a vulnerability in Zimbra mail servers exploited by Laundry Bear to deliver ZimReaper malware via a view-based exploit requiring only…