Close Menu
AI News TodayAI News Today

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Valor, Atreides, and Sequoia back AI startup Flow Engineering at $750M valuation

    Trump’s AI Safety ‘Accord’ Is a Fancy Pinky-Swear

    Attackers have been exploiting critical Zimbra flaw to steal emails

    Facebook X (Twitter) Instagram
    • About Us
    • Contact Us
    Facebook X (Twitter) Instagram Pinterest Vimeo
    AI News TodayAI News Today
    • Home
    • AI News
    • AI Reviews
    • AI Tools
    • AI Tutorials
    • Chatbots
    • Free AI Tools
    • Artificial Intelligence
    AI News TodayAI News Today
    Home»AI News»Attackers have been exploiting critical Zimbra flaw to steal emails
    AI News

    Attackers have been exploiting critical Zimbra flaw to steal emails

    By No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Attackers have been exploiting critical Zimbra flaw to steal emails
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Hackers have been exploiting a critical vulnerability in the Zimbra Collaboration Suite in an attempt to obtain email backups and authentication credentials of vulnerable organzations, Microsoft has warned.

    The vulnerability, tracked as CVE-2026-73570, lets attackers remotely issue operating system commands without authentication. Zimbra maintainer Synacor issued a patch on July 20, but didn’t disclose the vulnerability for more than three weeks after that. The security-focused Shadowserver Foundation said last week that its scans found that 274 separate instances of the Zimbra Collaboration Suite had been compromised. The number of servers running the software has fluctuated from 19,000 in the week following the patch to about 12,000 in the weeks following that. Currently, Shadowserver is tracking about 10,000 instances.

    Look, ma, no authorization

    From July 28 to August 7, Microsoft said Wednesday, the company detected two distinct scanning tools probing the Internet for vulnerable endpoints. The attackers first validated their exploit worked by sending HTTP, requests and DNS, ICMP, and out-of-band identity checks to domains hosted on public services. The probes allowed the attackers to confirm the exploit successfully executed commands on vulnerable servers without actually compromising them. Eventually, the attackers began using their command injection capability to install malicious payloads. Microsoft wrote:

    Following successful exploitation, observed activity included deployment of JSP web shells and reverse shells, privilege escalation, persistent remote-access tooling, and memory-backed execution. Threat actors also accessed email and collected authentication and mailbox data, with archive creation and subsequent transfer activity observed. The activity included both automated payload delivery and hands-on-keyboard operations on compromised mail servers. Microsoft observed affected organizations in more than one region and industry. Based on the environments investigated, exploitation was not limited to a single sector or geographic area.

    CVE-2026-73570 allows remote attackers with no credentials to run operating system commands through a crafted email that targets the ZCS SNMP notification path but only when an optional zimbra-snmp package is in place and SNMP notifications are enabled.

    attackers critical emails exploiting flaw Steal Zimbra
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleThe Battle to Be Your Personal AI Agent Is Here
    Next Article Trump’s AI Safety ‘Accord’ Is a Fancy Pinky-Swear
    • Website

    Related Posts

    AI News

    Valor, Atreides, and Sequoia back AI startup Flow Engineering at $750M valuation

    AI News

    The Battle to Be Your Personal AI Agent Is Here

    AI News

    AI voice startup ElevenLabs doubles valuation to $22B

    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Valor, Atreides, and Sequoia back AI startup Flow Engineering at $750M valuation

    0 Views

    Trump’s AI Safety ‘Accord’ Is a Fancy Pinky-Swear

    0 Views

    Attackers have been exploiting critical Zimbra flaw to steal emails

    0 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    AI Tutorials

    Quantization from the ground up

    AI Tools

    David Sacks is done as AI czar — here’s what he’s doing instead

    AI Reviews

    Judge sides with Anthropic to temporarily block the Pentagon’s ban

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Valor, Atreides, and Sequoia back AI startup Flow Engineering at $750M valuation

    0 Views

    Trump’s AI Safety ‘Accord’ Is a Fancy Pinky-Swear

    0 Views

    Attackers have been exploiting critical Zimbra flaw to steal emails

    0 Views
    Our Picks

    Quantization from the ground up

    David Sacks is done as AI czar — here’s what he’s doing instead

    Judge sides with Anthropic to temporarily block the Pentagon’s ban

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Terms & Conditions
    • Privacy Policy
    • Disclaimer

    © 2026 ainewstoday.co. All rights reserved. Designed by DD.

    Type above and press Enter to search. Press Esc to cancel.