Russian Hackers Exploit Zero-Click Attack Against Western Organizations (infosecurity-magazine.com)
0xBASE INTEL BRIEF
- Laundry Bear group exploits zero-click vulnerability CVE-2025-66376 in Zimbra.
- Joint advisory from Five Eyes and European agencies on July 23, 2026.
- Targets: government, defense, energy, media, NGOs, tech in Western countries.
"Western intelligence agencies issued a joint advisory on July 23, 2026, warning of a Russian state-backed hacking group exploiting a zero-click vulnerability in Zimbra Collaboration Suite. The campaign, dubbed Laundry Bear, targets Western government, defense, and other sectors. The exploit (CVE-2025-66376) allows data theft without user interaction."
no comments yet.