logo

Russian hackers exploit Zimbra flaw in Ukrainian govt attacks

ID: 50e3f0ce-7ea7-5a7d-8808-f4368345311c

STIX ID: report--50e3f0ce-7ea7-5a7d-8808-f4368345311c

Feed Name: DataBreaches.Net

Threat Score
88/100

Date Published: 2026-03-19

Date Updated: 2026-05-13

Author: Dissent

...
...

APT28 (a Russian state-linked threat actor) is exploiting a high-severity stored XSS in Zimbra Collaboration Suite (CVE-2025-66376) to achieve remote code execution and compromise Zimbra servers and email accounts of Ukrainian government targets; CISA has added the vulnerability to its catalog of exploited-in-the-wild flaws and ordered federal agencies to remediate within two weeks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.