news.mlab.sh
Back to the feed
threat-intel

Laundry Bear’s webmail hackers had more in store after February, report says

High
Image: The Record
Summary

Laundry Bear, a Russian state-linked APT group, has been aggressively exploiting vulnerabilities in both Zimbra Collaboration Suite’s webmail platform and Microsoft Outlook Web Access (OWA) to steal emails and credentials. The group’s latest tactic, dubbed OWAReaper, represents a significant advancement in their tradecraft, utilizing a sophisticated browser-based implant for persistent access. This campaign targeted government entities, telecommunications, financial institutions, and other sectors, and highlights the ongoing threat posed by Laundry Bear.

Read the full article at The Record

Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data

Report an error
Confirmed errors are fixed and listed on /corrections.