Russian-Linked Hackers Target 80+ Organizations via Roundcube Flaws
ID: c1e33010-84fd-566a-80b0-78a1e98a159f
STIX ID: report--c1e33010-84fd-566a-80b0-78a1e98a159f
Feed Name: The Hacker News
Threat Score
Recorded Future attributes an October 2023 cyber-espionage campaign to Winter Vivern (TAG-70/TA473), which exploited cross-site scripting (XSS) vulnerabilities in Roundcube webmail to inject JavaScript payloads that exfiltrated user credentials, impacting over 80 organizations including government, military, and diplomatic targets across Georgia, Poland, Ukraine and several embassies.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
