UNDERCOVERED IN US

Russian actors conduct zero-click phishing against Zimbra users

Russian state-supported cyber actors are conducting a phishing campaign targeting users of Zimbra Collaboration Suite. The zero-click attack technique requires no user interaction, according to advisories from CISA and the UK's NCSC.

6 reportsother · primary

Claim audit

No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.

All coverage

Russian State-Supported Cyber Actors Conduct Phishing Campaign Targeting Users of Zimbra Collaboration Suite

rss:cisa-advisoriesprimary68d ago kagi ↗

Russian State-Supported Cyber Actors Conduct Phishing Campaign Targeting Users of Zimbra Collaboration Suite Executive summary A group of Russian state-supported cyber actors has been targeting and compromising various Western government and commercial organizations using the Zimbra Collaboration Suite (ZCS) software since at least July 2025. The Russian state-supported advanced persistent threat

Russian state-supported hackers are targeting organizations with a new attack technique using a Zero-Click method which doesn’t require users to interact with the phishing email. The campaign is desig

mastodon:infosec-exchangeother67d ago kagi ↗

Russian state-supported hackers are targeting organizations with a new attack technique using a Zero-Click method which doesn’t require users to interact with the phishing email. The campaign is designed to compromise networks and gain persistent access, a joint advisory from western cyber intelligence agencies including National Cyber Security Centre has warned. “This phishing campaign demonstrat