Russian threat actors linked to the exploitation of a Zimbra vulnerability have been observed exploiting CVE-2026-42897, a cross-site scripting (XSS) flaw in…
A sophisticated JavaScript backdoor deployed via half-click exploits targeting Microsoft OWA, capable of persistent mailbox access, credential theft, and data exfiltration via…
Data ExfiltrationJavaScript implantMicrosoft OWAOWAReaper