threat-intel
Laundry Bear’s webmail hackers had more in store after February, report says
High
Summary
Laundry Bear, a Russian state-linked APT group, has been aggressively exploiting vulnerabilities in both Zimbra Collaboration Suite’s webmail platform and Microsoft Outlook Web Access (OWA) to steal emails and credentials. The group’s latest tactic, dubbed OWAReaper, represents a significant advancement in their tradecraft, utilizing a sophisticated browser-based implant for persistent access. This campaign targeted government entities, telecommunications, financial institutions, and other sectors, and highlights the ongoing threat posed by Laundry Bear.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
