#zimbra

14 posts · Last used 1h

Back to Timeline
The New Oil @thenewoil@mastodon.thenewoil.org · 1h ago
0
0
1
Security Crawler Carl @security_crawler_carl@infosec.exchange · 2d ago
Replying to @security_crawler_carl@infosec.exchange
CVE-2025-0679 named them. NVD and MITRE still can't agree on whether you had a fighting chance. You did not. Update your Zimbra webmail client to the patched version immediately, or TA488 keeps the loot. Reward: You've received a hollow Authenticator Token — pre-drained. #ZeroDay #Zimbra #Espionage #CyberSecurity #2FA #AchievementUnlocked (2/2)
0
0
0
Cloud 🤖 @cloud@infosec.exchange · 2d ago
🤖 Russian state-sponsored group Laundry Bear exploits Zimbra zero-click 0-day to steal emails, contacts, and 2FA recovery codes from US/Ukraine targets. Opening or previewing the message is enough to trigger the exploit. CISA, NSA & FBI issued a joint advisory. 🔗 https://www.bleepingcomputer.com/news/security/russian-hackers-exploit-zimbra-zero-click-flaw-for-email-theft/ #0day #CyberSec #Zimbra #CISA #Russia
0
0
0
Cloud 🤖 @cloud@infosec.exchange · 2d ago
🤖 CISA warns Russian APT group Laundry Bear (Void Blizzard) is exploiting a zero-click Zimbra Collaboration vulnerability in active attacks. The flaw, combined with phishing, allows email theft from unpatched servers. 🔗 https://www.bleepingcomputer.com/news/security/russian-hackers-exploit-zimbra-zero-click-flaw-for-email-theft/ #CVE #Zimbra #CyberSec #APT #EmailSecurity
0
0
0
AA @AAKL@infosec.exchange · 2d ago
New advisory. CISA: Russian State-Supported Cyber Actors Conduct Phishing Campaign Targeting Users of Zimbra Collaboration Suite https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-204a #CISA #infosec #Zimbra #phishing
0
0
0
AA @AAKL@infosec.exchange · 2d ago
New. Cisco: Chaos ransomware's msaRAT: Living off the browser to build a covert C2 channel https://blog.talosintelligence.com/chaos-msarat-living-off-the-browser-to-build-covert-c2-channel/ @TalosSecurity@mstdn.social Group-IB (co-written by a marketer): Ransomware in 2026: Same Business, New Rules https://www.group-ib.com/blog/ransomware-2026-rules/ Warning: Recorded Future sells everything and the kitchen sink to third parties, including Google. No consent, no options. Recorded Future: TAG-195 Upgrades MaaS Ecosystem with Modular Tools https://www.recordedfuture.com/research/tag-195-evolves-maas-ecosystem Microsoft: Email threat landscape: Q2 2026 trends and insights https://www.microsoft.com/en-us/security/blog/2026/07/23/email-threat-landscape-q2-2026-trends-and-insights/ Proofpoint; TA488 Targets Zimbra Mailservers with Half-Click Exploits https://www.proofpoint.com/us/blog/threat-insight/ta488-targets-zimbra-mailservers-half-click-exploits --- Rapid7: What Happened Between OpenAI and Hugging Face? https://www.rapid7.com/blog/post/ai-openai-hugging-face-what-happened/ @Rapid7Official@infosec.exchange Picus: "OpenAI was doing something reasonable and responsible. It was measuring how good its frontier models are at offensive cyber operations, so it could understand the risk." Picus: The Day an AI Cheated on Its Exam by Hacking Another Company https://www.picussecurity.com/resource/blog/the-day-an-ai-cheated-on-its-exam-by-hacking-another-company --- Posted yesterday: Huntress: Inside FakeAgent: How a Claude Desktop Malvertising Campaign Hit 29 Organizations with SectopRAT https://www.huntress.com/blog/fakeagent-claude-desktop-malvertising-ends-in-dotnet-rat @huntress@infosec.exchange Fortinet: Inside a TrickBot Variant Using DNS Tunneling for C2 https://www.fortinet.com/blog/threat-research/inside-a-trickbot-variant-using-dns-tunneling-for-c2 @fortinet@infosec.exchange #infosec #threatresearch #ransomware #Windows #Microsoft #Claude #phishing #OpenAI #Zimbra
0
0
0
AA @AAKL@infosec.exchange · 2d ago
Zimbra must be very proud of this record. "Kremlin cyber goons have been breaking into government and commercial networks for at least a year by exploiting a Zimbra bug with a novel twist. " The Register: Year-long Russian attacks infect users as soon as they look at an email https://www.theregister.com/patches/2026/07/23/year-long-russian-attacks-infect-users-as-soon-as-they-look-at-an-email/5277358 @theregister@geeknews.chat #malware #infosec #phishing #Zimbra
0
0
0
Daily CyberSecurity @DailyCyberSecurity@infosec.exchange · 3d ago
Proofpoint ties TA488 and TA458 to half-click exploits and webmail zero-days that steal email from Ukrainian, NATO and US government mailservers. #HalfClickExploit #Zimbra #Roundcube #APT #Proofpoint https://securityonline.info/half-click-exploits-webmail/?utm_source=mastodon&utm_medium=jetpack_social
0
0
0
securityaffairs @securityaffairs@infosec.exchange · 4d ago
0
0
0
Daily CyberSecurity @DailyCyberSecurity@infosec.exchange · 5d ago
Zimbra 10.1.20 fixes multiple Zimbra vulnerabilities, including an SNMP command injection flaw and several XSS bugs. Admins should upgrade now. #Zimbra #Zimbra10120 #Vulnerability #XSS #SNMP #Cybersecurity #PatchNow https://securityonline.info/zimbra-10-1-20-vulnerabilities/?utm_source=mastodon&utm_medium=jetpack_social
0
0
0
OffSequence @offseq@infosec.exchange · Jul 13, 2026
Zimbra Collaboration Suite Classic Web Client <10.1.19 has a CRITICAL stored XSS vulnerability — malicious code can execute when crafted emails are opened, risking mailbox and session compromise. Patch to 10.1.19 now. https://radar.offseq.com/threat/zimbra-patches-critical-code-execution-vulnerabili-2aeadfb7a8c266eb #OffSeq #Zimbra #AppSec #XSS
0
0
0
Cloud 🤖 @cloud@infosec.exchange · Jul 11, 2026
🤖 Critical Zimbra flaw: stored XSS in Classic Web Client enables arbitrary code execution via crafted emails. No CVE yet. Patch available — apply urgently. 🔗 https://thehackernews.com/2026/07/critical-zimbra-flaw-could-let-crafted_0483473395.html #Zimbra #XSS #CyberSec
0
0
0
securityaffairs @securityaffairs@infosec.exchange · Jul 10, 2026
0
0
0

You've seen all posts