INCIDENT EVIDENCE GRAPH
Russian hackers exploit Zimbra zero-click flaw for email theft
CISA is warning that the Russian state-sponsored hacking group Laundry Bear, also known as Void Blizzard, is targeting organizations using Zimbra Collaboration email servers by combining phishing attacks with the exploitation of a now-patched Zimbra vulnerability. [...]
- Victim: Organizations using Zimbra Collaboration email servers
- Actor: Laundry Bear (Void Blizzard, Russian state-sponsored hacking group)
- Exploit: Patched Zimbra zero-click vulnerability
- Method: Combination of phishing attacks and exploitation of Zimbra zero-click vulnerability