ADVERTISEMENT

Russian spies exploit unpatched Zimbra flaw to steal NATO member emails – zero clicks required

Hackers quietly tested the zero-click tactic in Ukraine before targeting NATO member organizations, CISA says.

Zimbra phishing campaign

Image by Cybernews

Stefanie Schappert
Stefanie Schappert Senior Journalist
July 23, 2026 Updated: 31 seconds ago 2 min read
Key takeaways:
prompt injection attack
Image by Cybernews.

Laundry Bear turns from Ukraine to the West

Russia, hackers, cybercrime, Ukraine
Image by Hlib Shabashnyi | Shutterstock
ADVERTISEMENT
“Previous campaigns indicated LAUNDRY BEAR relied on unsophisticated initial access techniques – including password spraying, phishing, and pass-the-cookie – allowing the group to successfully run high-volume operations,”
CISA states.

Zero-click attack leaves little for victims to do

Russian hackers, cyberattack
Image by Cybernews.
“The exploit attempts to exfiltrate the victim’s last 90 days of email communications, the organization email directory (i.e., Global Address List [GAL]), and other sensitive information to servers controlled by LAUNDRY BEAR,”
the advisory warns.

Unpatched servers remain at risk

Has your password leaked?

Enter your password to check if it has leaked. Having a leaked password creates the risk of identity theft, financial damages, and worse!
35,607,543,468
Exposed Passwords
Ad
Protect your personal information from cybercriminals and get 50% off the top-rated password manager
link_title link_title
Stefanie Schappert
Senior Journalist
ADVERTISEMENT