top of page
ALL POSTS
Russian Espionage Group Leverages Zimbra Zero-Day Exploit to Intercept Sensitive Communications and Authentication Codes from Western Targets
Key Findings Russian state-sponsored group Laundry Bear (also known as Void Blizzard) exploited a zero-day vulnerability in Zimbra Collaboration Suite for five months before patch in November 2025 CVE-2025-66376 requires only viewing a malicious email to trigger exploit—no user interaction needed beyond opening the message Single exploit steals 90 days of email history, account passwords, 2FA tokens, organization email directory, and search history Targets span government, de
Jul 233 min read
Zimbra 10.1.20 Patches Critical SNMP Command Injection and Multiple XSS Vulnerabilities
Key Findings Zimbra Collaboration Suite 10.1.20 patches a critical SNMP command injection vulnerability and multiple XSS bugs in the Classic Web Client The SNMP flaw allows arbitrary command execution on servers when SNMP notifications are enabled Four separate XSS vulnerabilities can be triggered through malicious attachment names and crafted input fields Additional patches address EWS access control issues, mailbox delegation flaws, SSRF in Nextcloud integration, and mail-f
Jul 212 min read
CISA Warns of Critical SharePoint and Zimbra Vulnerability Exploits
Key Findings CISA added two new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog Vulnerabilities affect Microsoft SharePoint and Zimbra Collaboration Suite Federal agencies required to patch these vulnerabilities by specific deadlines One vulnerability allows remote code execution, the other enables cross-site scripting Background The U.S. Cybersecurity and Infrastructure Security Agency (CISA) continues its proactive approach to identifying and addressing
Mar 191 min read
bottom of page
