Cybermes: agente de IA para pentesting automatizado https:// blog.elhacker.net/2026/08/cybe rmes-agente-de-ia-para-pentesting.html
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued a three-day deadline on August 24, 2026, for federal civilian agencies to patch CVE-2026-73570, an actively exploited vulnerability in Zimbra Collaboration Suite that allows full takeover of user communications.
International alert spotlights Russia-linked attacks on Zimbra webmail
On 2026-09-27 and 2026-09-28, CERT-EU and CERT-Bund (BSI) issued critical security advisories for Citrix NetScaler ADC and Gateway products, reporting remote code execution vulnerabilities. Additional high-severity flaws in Budibase, QEMU, ESRI ArcGIS, and Kiteworks were also published during this period.
Russian state-sponsored group 'Laundry Bear' exploited CVE-2025-66376, a zero-click Zimbra vulnerability, to steal emails, passwords, 2FA codes, and directories from US and NATO targets for at least five months. The campaign used phishing emails requiring only message preview to trigger the exploit.
com/2026/08/25/z... social At least 274 internet-facing Zimbra instances have been compromised by unknown attackers via CVE-2026-73570.
Threat actors exploited a high-severity vulnerability in Zimbra Collaboration Suite to remotely execute code and compromise over 270 Zimbra instances as of August 25, 2026. The ongoing attack campaign represents a significant breach affecting email infrastructure across multiple organizations.
📧 Critical Zimbra security update fixes 9 vulnerabilities 📝 Business email and collaboration suite Zimbra has received a major security update that fixes se... https://www.
An unauthenticated remote code execution vulnerability in Zimbra Collaboration Suite (CVE-2026-73570, CVSS 8.9) is under active exploitation via SMTP and SNMP notifications, affecting versions prior to 10.1.20. CISA and CERT Polska confirmed real-world attacks as of 21 August 2026.
20 via SNMP command injection. 20 now.
🎙️ Risky Bulletin: Western cyber agencies warn of Russian hacks of Zimbra servers https:// risky.biz/RBNEWS591/
# US Agencies Warn of # Laundry # Bear Campaign Targeting Unpatched # Zimbra Servers https:// securityaffairs.com/195901/apt /us-agencies-warn-of-laundry-bear-campaign-targeting-unpatched-zimbra-servers.html # securityaffairs # hacking
CERT Polska warned on 20 August 2026 that threat actors were actively exploiting a critical remote code execution vulnerability (CVE-2026-73570) in Zimbra Collaboration Suite across multiple systems. Zimbra released patches for nine vulnerabilities, with the RCE flaw posing immediate risk to mail server installations worldwide.
CVE-2025-14733 - Changed to Known Ransomware Status WatchGuard Firebox Out of Bounds Write VulnerabilityVendor: WatchGuardProduct: FireboxWatchGuard Fireware OS iked process contains an out of bounds write vulnerability in the OS iked process.
Various unrelated cybersecurity incidents were disclosed including CISA warnings about Check Point authentication vulnerabilities and Rockwell PLC exploits by Iran-linked hackers, Chick-fil-A credential compromise, and a Bluetooth vulnerability affecting 2.2 million vehicles. These represent distinct incidents across different sectors with no unified narrative.
CISA warns that Russian state-sponsored group Laundry Bear (Void Blizzard) is actively exploiting a zero-click vulnerability in Zimbra Collaboration email servers to target Western government and commercial organizations. The exploit is combined with phishing attacks to steal email data.
com/2026/08/21/c...
CVE-2026-93643 - zimbra collaboration suite (zcs) If Zimbra’s OnlyOffice document feature is enabled, a remote attacker who can view a public document can trick the system into writing files to any location and then… Too many irrelevant or confusing CVEs? com #zimbra #CVE #infosec When OnlyOffice/Document Editing is available, an unauthenticated remote attacker with access to an existing supported public Briefcase document can abuse.
Between August 26–27, 2026, security advisories were published for WordPress TranslatePress, Tenable Security Center, Zimbra Collaboration Suite, and NethServer WebTop. CodeQL 2.26.4 was released, and the OWASP Top 10 For LLM Applications 2026 paper was published.
Zimbra Collaboration Suite 10.1.19 Remote Code Execution https:// packetstorm.news/files/231303 # exploit
AIVD waarschuwt voor XSS-aanvallen op gebruikers van Zimbra-webmail
Russian state-supported cyber actors are conducting a phishing campaign targeting users of Zimbra Collaboration Suite. The zero-click attack technique requires no user interaction, according to advisories from CISA and the UK's NCSC.
Unauthenticated RCE in Zimbra's SNMP component is being actively exploited, CERT Polska confirms. 9 and puts over 12,000 servers at risk.
Zimbra must be very proud of this record. "Kremlin cyber goons have been breaking into government and commercial networks for at least a year by exploiting a Zimbra bug with a novel twist.
Thousands of Hacked WordPress Sites, One Operation: Unmasking StopAndProtect https:// packetstorm.news/news/view/428 32 # news
CISA and security researchers warned on August 20–21, 2026 of active exploitation of multiple critical remote code execution vulnerabilities: Ray framework (CVE-2025-62593, CVSS 8.8), Zimbra Collaboration Suite (CVE-2026-73570), and Microsoft Windows IKE service. Attackers are targeting machine learning and messaging systems.