Russian threat actors linked to the exploitation of a Zimbra vulnerability have been observed exploiting CVE-2026-42897, a cross-site scripting (XSS) flaw in…
A Russian threat actor also known as CL-STA-1114, TA488, UNK_PitStop, and Void Blizzard, responsible for exploiting vulnerabilities in Zimbra and Microsoft OWA…
A Russian state-sponsored espionage group exploited a zero-day vulnerability in Zimbra's webmail client to steal emails, passwords, and two-factor authentication recovery codes…